it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

223 jobs found

Email me jobs like this
Refine Search
Current Search
senior cyber security analyst
Senior Cybersecurity Analyst - Lead SOC & Platform (Hybrid)
Sreeyam Soft Pvt Ltd Birmingham, Staffordshire
Sreeyam Soft Pvt Ltd is seeking an experienced software engineer to defend client environments as part of our 24/7 managed SOC in the UK. The role involves end-to-end delivery of major features, leading engineers, and ensuring engineering excellence in performance and security. Candidates should have over 5 years of software engineering experience, strong communication skills, and the right to work in the UK. Benefits include top pay, £2,000/year for learning, and modern offices with flexible remote work.
22/07/2026
Full time
Sreeyam Soft Pvt Ltd is seeking an experienced software engineer to defend client environments as part of our 24/7 managed SOC in the UK. The role involves end-to-end delivery of major features, leading engineers, and ensuring engineering excellence in performance and security. Candidates should have over 5 years of software engineering experience, strong communication skills, and the right to work in the UK. Benefits include top pay, £2,000/year for learning, and modern offices with flexible remote work.
Cybersecurity - Senior Manager
CFGI
About CFGI CFGI is a global consulting firm that helps organisations navigate complex business challenges with confidence. With a strong presence in the UK, we partner with companies across industries to deliver best-in-class advisory services in accounting, risk, cyber security, technology, and business transformation. We pride ourselves on combining technical expertise with a practical, hands on approach, helping our clients strengthen resilience, meet regulatory requirements, and stay ahead in an increasingly digital and risk driven landscape. Technical and Domain Experience Conduct cybersecurity maturity and risk assessment and for clients. Practical experience implementing security controls, in areas such as MDR, IAM, Network Security, Cloud Deployments. Advise clients on cybersecurity strategy, metrics and reporting for various levels of stakeholders, including Audit Committees and Board of Directors. Build risk management practices for clients, including policies, procedures, Risk Register, etc. Previous experience as a systems administrator, systems engineer, or security analyst. Understanding of operating system hardening principles, network design principles, and systems security. Guide clients in establishing cybersecurity policies, standards, and procedures. Manage cybersecurity training & awareness services for clients from design to implementation. Understanding of security analysis, security events, and penetration testing. Soft Skills Strong interpersonal and communication skills; experience with cross cultural communications. Calmness and clarity of thought under pressure and ability to maintain positive attitude. Agile and flexible, capable of dealing with ambiguity, and confronting challenges and opportunities with speed, endurance, and decisiveness. Confidence to manage upwards, provide forward thinking ideas and actively participate in improving CFGI's cyber offering. Technical Qualifications and Certifications Industry certifications are preferred, but not required: CISSP, CISM, etc. Technology specific qualifications in technology or security solutions. Experience Whilst we will judge the quality of candidates not their time served in the industry, a good gauge for this role would be around 5 years' experience in technology and security related fields. Your experience does not have to be purely cyber security consulting. We believe individuals with practical skillsets from in house roles, broader technology management or GRC, for example, would be well placed in our team. We know great candidates bring a mix of skills and experiences, you don't need to have done everything listed in this job description to apply.
22/07/2026
Full time
About CFGI CFGI is a global consulting firm that helps organisations navigate complex business challenges with confidence. With a strong presence in the UK, we partner with companies across industries to deliver best-in-class advisory services in accounting, risk, cyber security, technology, and business transformation. We pride ourselves on combining technical expertise with a practical, hands on approach, helping our clients strengthen resilience, meet regulatory requirements, and stay ahead in an increasingly digital and risk driven landscape. Technical and Domain Experience Conduct cybersecurity maturity and risk assessment and for clients. Practical experience implementing security controls, in areas such as MDR, IAM, Network Security, Cloud Deployments. Advise clients on cybersecurity strategy, metrics and reporting for various levels of stakeholders, including Audit Committees and Board of Directors. Build risk management practices for clients, including policies, procedures, Risk Register, etc. Previous experience as a systems administrator, systems engineer, or security analyst. Understanding of operating system hardening principles, network design principles, and systems security. Guide clients in establishing cybersecurity policies, standards, and procedures. Manage cybersecurity training & awareness services for clients from design to implementation. Understanding of security analysis, security events, and penetration testing. Soft Skills Strong interpersonal and communication skills; experience with cross cultural communications. Calmness and clarity of thought under pressure and ability to maintain positive attitude. Agile and flexible, capable of dealing with ambiguity, and confronting challenges and opportunities with speed, endurance, and decisiveness. Confidence to manage upwards, provide forward thinking ideas and actively participate in improving CFGI's cyber offering. Technical Qualifications and Certifications Industry certifications are preferred, but not required: CISSP, CISM, etc. Technology specific qualifications in technology or security solutions. Experience Whilst we will judge the quality of candidates not their time served in the industry, a good gauge for this role would be around 5 years' experience in technology and security related fields. Your experience does not have to be purely cyber security consulting. We believe individuals with practical skillsets from in house roles, broader technology management or GRC, for example, would be well placed in our team. We know great candidates bring a mix of skills and experiences, you don't need to have done everything listed in this job description to apply.
Lead Commercial Data Analyst
News Corporation
Lead Commercial Data Analyst About the Role: We are seeking a Senior Commercial Data Analyst to drive revenue growth through data-driven insights. In this role, you will focus on the "why" and "what next" by analyzing commercial performance, subscriber behavior, and pricing strategies for our data feeds, market intelligence software, and analytics platforms. You will manage and manipulate commercial data to optimize our sales pipeline and revenue tracking. This position reports to the Doug Strein. You Will: Lead commodity data and pricing strategy, evaluating the commercial performance of specific datasets and benchmarks, developing value-based pricing models for data feeds and APIs, and auditing client usage to identify expansion opportunities. Drive churn and retention analytics, identifying leading indicators of customer churn, building predictive risk models, segmenting client cohorts, and quantifying the financial impact of downgrades to mitigate revenue leakage. Optimize CRM analytics and commercial reporting, building and maintaining Salesforce dashboards, monitoring core KPIs like sales pipelines and ARR, and designing executive performance dashboards in partnership with Sales, Product, and Editorial teams. You Have: Demonstrable experience of commercial data analysis experience, ideally within a Price Reporting Agency (PRA), financial data provider, or commodity trading environment. Advanced technical capability with Salesforce CRM (including custom reporting, dashboards, and data architecture), SQL, and Microsoft Excel for processing large datasets. Demonstrated experience building reports and dashboards in Power BI or Tableau. Strong foundational understanding of commodity markets, energy sectors, or global trade. Undergraduate degree in Economics, Finance, Statistics, Data Science, or a related field, or equivalent experience. Experience with Python or R for predictive modeling and data manipulation is a nice-to-have. Our Benefits: Comprehensive Insurance Plans Paid Time Off Family Care Benefits Access to Dow Jones Products Subscription Discounts Employee Referral Program Employee Well-being Support & Fitness Programs Financial Health Programs Cybersecurity Protection Equal Opportunity Employer All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, protected veteran status, disability status or any other protected characteristic under applicable law. Reasonable Accommodation We are committed to providing reasonable accommodation for qualified individuals with disabilities in our job application and/or interview process. If you need assistance or accommodation in completing your application or participating in an interview due to a disability, email us at . Please put "Reasonable Accommodation" in the subject line and provide a brief description of the type of assistance you need. This inbox will not be monitored for application status updates. Please refer to the privacy notice at the bottom of this page for submitting any data access, deletion, or other data subject rights requests, where permitted under your local laws and regulations. Business Area: Dow Jones - Energy Job Category: Data Analytics/Warehousing & Business Intelligence Union Status: Non-Union role
22/07/2026
Full time
Lead Commercial Data Analyst About the Role: We are seeking a Senior Commercial Data Analyst to drive revenue growth through data-driven insights. In this role, you will focus on the "why" and "what next" by analyzing commercial performance, subscriber behavior, and pricing strategies for our data feeds, market intelligence software, and analytics platforms. You will manage and manipulate commercial data to optimize our sales pipeline and revenue tracking. This position reports to the Doug Strein. You Will: Lead commodity data and pricing strategy, evaluating the commercial performance of specific datasets and benchmarks, developing value-based pricing models for data feeds and APIs, and auditing client usage to identify expansion opportunities. Drive churn and retention analytics, identifying leading indicators of customer churn, building predictive risk models, segmenting client cohorts, and quantifying the financial impact of downgrades to mitigate revenue leakage. Optimize CRM analytics and commercial reporting, building and maintaining Salesforce dashboards, monitoring core KPIs like sales pipelines and ARR, and designing executive performance dashboards in partnership with Sales, Product, and Editorial teams. You Have: Demonstrable experience of commercial data analysis experience, ideally within a Price Reporting Agency (PRA), financial data provider, or commodity trading environment. Advanced technical capability with Salesforce CRM (including custom reporting, dashboards, and data architecture), SQL, and Microsoft Excel for processing large datasets. Demonstrated experience building reports and dashboards in Power BI or Tableau. Strong foundational understanding of commodity markets, energy sectors, or global trade. Undergraduate degree in Economics, Finance, Statistics, Data Science, or a related field, or equivalent experience. Experience with Python or R for predictive modeling and data manipulation is a nice-to-have. Our Benefits: Comprehensive Insurance Plans Paid Time Off Family Care Benefits Access to Dow Jones Products Subscription Discounts Employee Referral Program Employee Well-being Support & Fitness Programs Financial Health Programs Cybersecurity Protection Equal Opportunity Employer All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, protected veteran status, disability status or any other protected characteristic under applicable law. Reasonable Accommodation We are committed to providing reasonable accommodation for qualified individuals with disabilities in our job application and/or interview process. If you need assistance or accommodation in completing your application or participating in an interview due to a disability, email us at . Please put "Reasonable Accommodation" in the subject line and provide a brief description of the type of assistance you need. This inbox will not be monitored for application status updates. Please refer to the privacy notice at the bottom of this page for submitting any data access, deletion, or other data subject rights requests, where permitted under your local laws and regulations. Business Area: Dow Jones - Energy Job Category: Data Analytics/Warehousing & Business Intelligence Union Status: Non-Union role
Senior Cybersecurity & Risk Strategy Leader
CFGI
About CFGI CFGI is a global consulting firm that helps organisations navigate complex business challenges with confidence. With a strong presence in the UK, we partner with companies across industries to deliver best-in-class advisory services in accounting, risk, cyber security, technology, and business transformation. We pride ourselves on combining technical expertise with a practical, hands on approach, helping our clients strengthen resilience, meet regulatory requirements, and stay ahead in an increasingly digital and risk driven landscape. Technical and Domain Experience Conduct cybersecurity maturity and risk assessment and for clients. Practical experience implementing security controls, in areas such as MDR, IAM, Network Security, Cloud Deployments. Advise clients on cybersecurity strategy, metrics and reporting for various levels of stakeholders, including Audit Committees and Board of Directors. Build risk management practices for clients, including policies, procedures, Risk Register, etc. Previous experience as a systems administrator, systems engineer, or security analyst. Understanding of operating system hardening principles, network design principles, and systems security. Guide clients in establishing cybersecurity policies, standards, and procedures. Manage cybersecurity training & awareness services for clients from design to implementation. Understanding of security analysis, security events, and penetration testing. Soft Skills Strong interpersonal and communication skills; experience with cross cultural communications. Calmness and clarity of thought under pressure and ability to maintain positive attitude. Agile and flexible, capable of dealing with ambiguity, and confronting challenges and opportunities with speed, endurance, and decisiveness. Confidence to manage upwards, provide forward thinking ideas and actively participate in improving CFGI's cyber offering. Technical Qualifications and Certifications Industry certifications are preferred, but not required: CISSP, CISM, etc. Technology specific qualifications in technology or security solutions. Experience Whilst we will judge the quality of candidates not their time served in the industry, a good gauge for this role would be around 5 years' experience in technology and security related fields. Your experience does not have to be purely cyber security consulting. We believe individuals with practical skillsets from in house roles, broader technology management or GRC, for example, would be well placed in our team. We know great candidates bring a mix of skills and experiences, you don't need to have done everything listed in this job description to apply.
22/07/2026
Full time
About CFGI CFGI is a global consulting firm that helps organisations navigate complex business challenges with confidence. With a strong presence in the UK, we partner with companies across industries to deliver best-in-class advisory services in accounting, risk, cyber security, technology, and business transformation. We pride ourselves on combining technical expertise with a practical, hands on approach, helping our clients strengthen resilience, meet regulatory requirements, and stay ahead in an increasingly digital and risk driven landscape. Technical and Domain Experience Conduct cybersecurity maturity and risk assessment and for clients. Practical experience implementing security controls, in areas such as MDR, IAM, Network Security, Cloud Deployments. Advise clients on cybersecurity strategy, metrics and reporting for various levels of stakeholders, including Audit Committees and Board of Directors. Build risk management practices for clients, including policies, procedures, Risk Register, etc. Previous experience as a systems administrator, systems engineer, or security analyst. Understanding of operating system hardening principles, network design principles, and systems security. Guide clients in establishing cybersecurity policies, standards, and procedures. Manage cybersecurity training & awareness services for clients from design to implementation. Understanding of security analysis, security events, and penetration testing. Soft Skills Strong interpersonal and communication skills; experience with cross cultural communications. Calmness and clarity of thought under pressure and ability to maintain positive attitude. Agile and flexible, capable of dealing with ambiguity, and confronting challenges and opportunities with speed, endurance, and decisiveness. Confidence to manage upwards, provide forward thinking ideas and actively participate in improving CFGI's cyber offering. Technical Qualifications and Certifications Industry certifications are preferred, but not required: CISSP, CISM, etc. Technology specific qualifications in technology or security solutions. Experience Whilst we will judge the quality of candidates not their time served in the industry, a good gauge for this role would be around 5 years' experience in technology and security related fields. Your experience does not have to be purely cyber security consulting. We believe individuals with practical skillsets from in house roles, broader technology management or GRC, for example, would be well placed in our team. We know great candidates bring a mix of skills and experiences, you don't need to have done everything listed in this job description to apply.
Interface Recruitment
Senior Security Engineering Team Lead
Interface Recruitment
Senior Security Engineering Team Lead Leeds (Home with 1 HQ visit per quarter) Up to 82,500 (NEG) + Excellent Benefits Are you an experienced Security Engineer ready to lead from the front? We're supporting a leading international managed technology organisation in the search for a Senior Security Engineering Team Lead to head a dedicated cyber security engineering function supporting a major enterprise customer operating within a highly regulated environment. This is far more than a traditional management role. You'll remain hands-on, acting as the technical authority for Microsoft security technologies whilst leading a team of experienced Security Analysts and Engineers responsible for protecting a critical customer environment. If you're passionate about Microsoft security, detection engineering, automation and mentoring technical teams, this is an opportunity to influence the direction of an enterprise-scale security operation. The Opportunity As the technical lead for the Security Engineering function, you'll own the security platform estate, providing architectural guidance, driving continuous improvement and acting as the primary escalation point for complex cyber security incidents. You'll combine strategic leadership with hands-on engineering, working closely with Security Analysts, Infrastructure teams and customer stakeholders to ensure security platforms remain resilient, effective and continually evolving. This is an excellent opportunity to join an organisation that invests heavily in technology, professional development and long-term career progression whilst working with some of the latest Microsoft security technologies. Key Responsibilities Lead and develop a team of Security Engineers and Security Analysts Act as the senior technical escalation point for complex cyber security incidents Own the configuration, maintenance and optimisation of the Microsoft security platform Drive detection engineering, rule tuning and continuous platform improvement Lead SIEM and SOAR engineering activities, including automation and Logic Apps Oversee log ingestion, telemetry quality and detection coverage Support vulnerability management and exposure management tooling Work closely with customers and internal technical teams on security architecture and platform improvements Mentor engineers and analysts, helping raise technical capability across the team Contribute to platform roadmaps, governance, documentation and service improvements Technology Environment You'll work across a modern Microsoft-centric cyber security stack including: Microsoft Defender XDR Defender for Endpoint Defender for Identity Microsoft Sentinel Logic Apps SOAR Automation Microsoft Purview Qualys XM Cyber CyberArk Detection Engineering KQL Threat Hunting Platform Engineering About You We're looking for someone who combines deep technical expertise with natural leadership skills. You'll likely have experience in areas such as: Security Engineering Detection Engineering SOC Engineering Microsoft Security Security Platform Management Cyber Security Architecture Security Automation Team Leadership You'll also possess: Expert knowledge of Microsoft Defender technologies Strong Microsoft Sentinel experience Experience building or improving security detections Knowledge of SOAR and security automation Experience within regulated or enterprise environments Excellent stakeholder management and communication skills Previous leadership or mentoring experience Why Apply? This organisation is recognised as one of the world's leading managed technology providers, delivering cloud, cyber security, data and digital workplace solutions to thousands of enterprise customers across multiple countries. It combines the scale of an international business with a culture that genuinely invests in its people through continuous learning, technical certifications, structured development programmes and internal career progression. You'll be joining at an exciting stage of growth, leading a newly established security capability supporting a strategic customer where you'll have genuine influence over both the technology roadmap and the development of your team. Package Salary up to 82,500 (NEG) Home working with one visit to HQ per quarter Excellent benefits package Significant investment in training and certifications Career progression opportunities Opportunity to work with enterprise Microsoft security technologies Technical leadership role with genuine strategic influence
22/07/2026
Full time
Senior Security Engineering Team Lead Leeds (Home with 1 HQ visit per quarter) Up to 82,500 (NEG) + Excellent Benefits Are you an experienced Security Engineer ready to lead from the front? We're supporting a leading international managed technology organisation in the search for a Senior Security Engineering Team Lead to head a dedicated cyber security engineering function supporting a major enterprise customer operating within a highly regulated environment. This is far more than a traditional management role. You'll remain hands-on, acting as the technical authority for Microsoft security technologies whilst leading a team of experienced Security Analysts and Engineers responsible for protecting a critical customer environment. If you're passionate about Microsoft security, detection engineering, automation and mentoring technical teams, this is an opportunity to influence the direction of an enterprise-scale security operation. The Opportunity As the technical lead for the Security Engineering function, you'll own the security platform estate, providing architectural guidance, driving continuous improvement and acting as the primary escalation point for complex cyber security incidents. You'll combine strategic leadership with hands-on engineering, working closely with Security Analysts, Infrastructure teams and customer stakeholders to ensure security platforms remain resilient, effective and continually evolving. This is an excellent opportunity to join an organisation that invests heavily in technology, professional development and long-term career progression whilst working with some of the latest Microsoft security technologies. Key Responsibilities Lead and develop a team of Security Engineers and Security Analysts Act as the senior technical escalation point for complex cyber security incidents Own the configuration, maintenance and optimisation of the Microsoft security platform Drive detection engineering, rule tuning and continuous platform improvement Lead SIEM and SOAR engineering activities, including automation and Logic Apps Oversee log ingestion, telemetry quality and detection coverage Support vulnerability management and exposure management tooling Work closely with customers and internal technical teams on security architecture and platform improvements Mentor engineers and analysts, helping raise technical capability across the team Contribute to platform roadmaps, governance, documentation and service improvements Technology Environment You'll work across a modern Microsoft-centric cyber security stack including: Microsoft Defender XDR Defender for Endpoint Defender for Identity Microsoft Sentinel Logic Apps SOAR Automation Microsoft Purview Qualys XM Cyber CyberArk Detection Engineering KQL Threat Hunting Platform Engineering About You We're looking for someone who combines deep technical expertise with natural leadership skills. You'll likely have experience in areas such as: Security Engineering Detection Engineering SOC Engineering Microsoft Security Security Platform Management Cyber Security Architecture Security Automation Team Leadership You'll also possess: Expert knowledge of Microsoft Defender technologies Strong Microsoft Sentinel experience Experience building or improving security detections Knowledge of SOAR and security automation Experience within regulated or enterprise environments Excellent stakeholder management and communication skills Previous leadership or mentoring experience Why Apply? This organisation is recognised as one of the world's leading managed technology providers, delivering cloud, cyber security, data and digital workplace solutions to thousands of enterprise customers across multiple countries. It combines the scale of an international business with a culture that genuinely invests in its people through continuous learning, technical certifications, structured development programmes and internal career progression. You'll be joining at an exciting stage of growth, leading a newly established security capability supporting a strategic customer where you'll have genuine influence over both the technology roadmap and the development of your team. Package Salary up to 82,500 (NEG) Home working with one visit to HQ per quarter Excellent benefits package Significant investment in training and certifications Career progression opportunities Opportunity to work with enterprise Microsoft security technologies Technical leadership role with genuine strategic influence
DFIR Lead Cyber Operations Analyst
慨正橡扯 Knutsford, Cheshire
Join Barclays as a DFIR Lead Cyber Operations Analyst, a VP-level role at the centre of the bank's cyber defence, delivering advanced digital forensics and incident response. You will analyse malware, malicious samples and network activity to support complex investigations, working closely with internal teams, external partners and law enforcement. This is a highly technical, hands on position suited to an experienced cyber or digital forensics professional, with passion for deep investigation, and the ability to produce clear, high quality reporting in a fast paced, high pressure environment. Please note that this role includes an on call support rotation. Occasional additional support may be required, including extended hours and weekend work. To be successful in this role, you will need the following: Digital forensics and incident response expertise, including host, network, cloud and live forensic analysis, supported by rigorous documentation practices. Excellent written and verbal communication skills, with the ability to clearly articulate complex technical findings to senior stakeholders and non technical business teams. Proven leadership under pressure, including coordinating investigations, managing cross functional stakeholders, and operating effectively within a regulated banking environment. Some other highly valued skills may include: Cloud investigation experience across platforms such as AWS, Azure, or Google Cloud. Scripting and automation capabilities, using languages such as Python, PowerShell, Bash, or JavaScript. Relevant industry certifications, such as GCFA, GNFA, GCFE, or GREM. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job specific technical skills. The successful candidate will be based in Knutsford (Radbroke Hall). Purpose of the role To monitor the performance of operational controls, implement and manage security controls and consider lessons learned in order to protect the bank from potential cyber attacks and respond to threats. Accountabilities Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage. Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise. Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats. Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network. Management of cyber security incidents including remediation & driving to closure. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/processes; deliver continuous improvements and escalate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions. Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
22/07/2026
Full time
Join Barclays as a DFIR Lead Cyber Operations Analyst, a VP-level role at the centre of the bank's cyber defence, delivering advanced digital forensics and incident response. You will analyse malware, malicious samples and network activity to support complex investigations, working closely with internal teams, external partners and law enforcement. This is a highly technical, hands on position suited to an experienced cyber or digital forensics professional, with passion for deep investigation, and the ability to produce clear, high quality reporting in a fast paced, high pressure environment. Please note that this role includes an on call support rotation. Occasional additional support may be required, including extended hours and weekend work. To be successful in this role, you will need the following: Digital forensics and incident response expertise, including host, network, cloud and live forensic analysis, supported by rigorous documentation practices. Excellent written and verbal communication skills, with the ability to clearly articulate complex technical findings to senior stakeholders and non technical business teams. Proven leadership under pressure, including coordinating investigations, managing cross functional stakeholders, and operating effectively within a regulated banking environment. Some other highly valued skills may include: Cloud investigation experience across platforms such as AWS, Azure, or Google Cloud. Scripting and automation capabilities, using languages such as Python, PowerShell, Bash, or JavaScript. Relevant industry certifications, such as GCFA, GNFA, GCFE, or GREM. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job specific technical skills. The successful candidate will be based in Knutsford (Radbroke Hall). Purpose of the role To monitor the performance of operational controls, implement and manage security controls and consider lessons learned in order to protect the bank from potential cyber attacks and respond to threats. Accountabilities Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage. Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise. Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats. Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network. Management of cyber security incidents including remediation & driving to closure. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/processes; deliver continuous improvements and escalate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions. Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
Senior DFIR Lead - Cyber Operations & Incident Response
慨正橡扯 Knutsford, Cheshire
慨正橡扯 is seeking a DFIR Lead Cyber Operations Analyst to lead in cyber defence efforts. This VP-level role involves analyzing malware and network activities, producing quality reports, and working closely with various stakeholders. The ideal candidate will excel in digital forensics, have strong communication skills, and provide leadership during high-pressure situations. Responsibilities include managing security threats and implementing effective controls to protect against cyber attacks.
22/07/2026
Full time
慨正橡扯 is seeking a DFIR Lead Cyber Operations Analyst to lead in cyber defence efforts. This VP-level role involves analyzing malware and network activities, producing quality reports, and working closely with various stakeholders. The ideal candidate will excel in digital forensics, have strong communication skills, and provide leadership during high-pressure situations. Responsibilities include managing security threats and implementing effective controls to protect against cyber attacks.
IT&D Senior Program Manager, PLM
Reckitt Benckiser LLC Slough, Berkshire
IT&D Senior Program Manager, PLM City: Slough We are Reckitt Home to the world's best loved and trusted hygiene, health, and nutrition brands. Our purpose defines why we exist: to protect, heal and nurture in the relentless pursuit of a cleaner, healthier world. We are a global team united by this purpose. Join us in our fight to make access to the highest quality hygiene, wellness, and nourishment a right and not a privilege. In IT and D, you'll be a force for good, whether you're championing cyber security, defining how we harness the power of technology to improve our business, or working with data to guide the innovation of consumer loved products. Working globally across functions, you'll own your projects and process from start to finish, with the influence and visibility to achieve what needs to be done. And if you're willing to bring your ideas to the table, you'll get the support and investment to make them happen. Your potential will never be wasted. You'll get the space and support to take your development to the next level. Every day, there will be opportunities to learn from peers and leaders through working on exciting, varied projects with real impact. And because our work spans so many different businesses, from Research and Product Development to Sales, you'll keep learning exciting new approaches. About the role We are looking for an experienced IT & Digital Senior Program Manager - PLM to lead the delivery of our end-to-end Product Lifecycle Management (PLM) transformation. In this role, you will oversee a complex portfolio of programmes spanning both legacy and future PLM landscapes, ensuring seamless delivery, strong governance, and clear visibility of progress and value. Working closely with senior IT&D and business leaders, you will play a critical role in evolving PLM into a true product-led capability, enabling innovation, compliance, and operational excellence across the organisation. This is a high-impact leadership opportunity at the centre of a strategic digital transformation - shaping how products are developed, managed, and delivered across their lifecycle. Your responsibilities Lead the end-to-end PLM programme, ensuring delivery of projects and workstreams to agreed scope, timelines, and budgets Establish and maintain robust programme governance frameworks, including steering committees and executive reporting Manage programme financials, ensuring effective planning, tracking, and value realisation Develop and maintain integrated programme and workstream plans, ensuring alignment across delivery teams Define and track KPIs and OKRs to measure delivery performance and business value Identify and manage cross-functional dependencies across systems, platforms, and business processes Ensure compliance with IT&D quality standards and regulatory requirements (GxP) throughout delivery Partner with business and IT leadership to align delivery with strategic roadmaps and priorities Manage relationships with executive sponsors and external delivery partners, ensuring successful outcomes Lead and support delivery teams, providing guidance, direction, and oversight across programme execution The experience we're looking for Extensive experience leading large-scale, complex digital transformation programmes, ideally within PLM or related domains Strong track record of operating in regulated environments (e.g. GxP) and ensuring compliant delivery Deep understanding of programme and product management methodologies, including Agile, Waterfall, and hybrid approaches Proven ability to manage programme governance, financials, risks, and dependencies across global, matrixed organisations Excellent stakeholder management skills, with experience engaging senior executives and cross-functional teams Experience working with external delivery partners and managing complex vendor relationships Strong leadership capability, with the ability to guide teams and drive alignment across diverse stakeholders Familiarity with PLM processes, product lifecycle environments, or FMCG/healthcare sectors is highly desirable Relevant qualifications such as PMP, Scrum Master, or equivalent programme management certifications preferred The skills for success Product Development, system development, Project Management, Programme Management, Design Thinking, Process Automisation, IT Service Management, Innovation Processes, Innovation, User Experience Design, Change Analyst, Change Management, Digital Transformation, Value Analysis, Adoption, Technology Adoption Lifecycle, Stakeholder Relationship Management, Vendor Management, Outstanding Communication, stakeholder engagement, Digital Strategy, Product Solution Architecture, Cyber Security Strategy, Cyber Security, Data Privacy, Portfolio Management, Data Governance, Product Compliance, Media Analytics, advertising, Consumer Engagement, Market Value, Market Chain, Data Driven Practices, Advanced Analytics, Data Analytics, Governance. What we offer With inclusion at the heart of everything we do, working alongside our four global Employee Resource Groups, we support our people at every step of their career journey, helping them to succeed in their own individual way. We invest in the wellbeing of our people through parental benefits, an Employee Assistance Program to promote mental health, and life insurance for all employees globally. We have a range of other benefits in line with the local market. Through our global share plans we offer the opportunity to save and share in Reckitt's potential future successes. For eligible roles, we also offer short-term incentives to recognise, appreciate and reward your work for delivering outstanding results. You will be rewarded in line with Reckitt's pay for performance philosophy. Equality We recognise that in real life, great people don't always 'tick all the boxes'. That's why we hire for potential as well as experience. Even if you don't meet every point on the job description, if this role and our company feels like a good fit for you, we still want to hear from you. All qualified applicants will receive consideration for employment without regard to age, disability or medical condition; colour, ethnicity, race, citizenship, and national origin; religion, faith; pregnancy, family status and caring responsibilities; sexual orientation; sex, gender identity, gender expression, and transgender identity; protected veteran status; size or any other basis protected by appropriate law.
22/07/2026
Full time
IT&D Senior Program Manager, PLM City: Slough We are Reckitt Home to the world's best loved and trusted hygiene, health, and nutrition brands. Our purpose defines why we exist: to protect, heal and nurture in the relentless pursuit of a cleaner, healthier world. We are a global team united by this purpose. Join us in our fight to make access to the highest quality hygiene, wellness, and nourishment a right and not a privilege. In IT and D, you'll be a force for good, whether you're championing cyber security, defining how we harness the power of technology to improve our business, or working with data to guide the innovation of consumer loved products. Working globally across functions, you'll own your projects and process from start to finish, with the influence and visibility to achieve what needs to be done. And if you're willing to bring your ideas to the table, you'll get the support and investment to make them happen. Your potential will never be wasted. You'll get the space and support to take your development to the next level. Every day, there will be opportunities to learn from peers and leaders through working on exciting, varied projects with real impact. And because our work spans so many different businesses, from Research and Product Development to Sales, you'll keep learning exciting new approaches. About the role We are looking for an experienced IT & Digital Senior Program Manager - PLM to lead the delivery of our end-to-end Product Lifecycle Management (PLM) transformation. In this role, you will oversee a complex portfolio of programmes spanning both legacy and future PLM landscapes, ensuring seamless delivery, strong governance, and clear visibility of progress and value. Working closely with senior IT&D and business leaders, you will play a critical role in evolving PLM into a true product-led capability, enabling innovation, compliance, and operational excellence across the organisation. This is a high-impact leadership opportunity at the centre of a strategic digital transformation - shaping how products are developed, managed, and delivered across their lifecycle. Your responsibilities Lead the end-to-end PLM programme, ensuring delivery of projects and workstreams to agreed scope, timelines, and budgets Establish and maintain robust programme governance frameworks, including steering committees and executive reporting Manage programme financials, ensuring effective planning, tracking, and value realisation Develop and maintain integrated programme and workstream plans, ensuring alignment across delivery teams Define and track KPIs and OKRs to measure delivery performance and business value Identify and manage cross-functional dependencies across systems, platforms, and business processes Ensure compliance with IT&D quality standards and regulatory requirements (GxP) throughout delivery Partner with business and IT leadership to align delivery with strategic roadmaps and priorities Manage relationships with executive sponsors and external delivery partners, ensuring successful outcomes Lead and support delivery teams, providing guidance, direction, and oversight across programme execution The experience we're looking for Extensive experience leading large-scale, complex digital transformation programmes, ideally within PLM or related domains Strong track record of operating in regulated environments (e.g. GxP) and ensuring compliant delivery Deep understanding of programme and product management methodologies, including Agile, Waterfall, and hybrid approaches Proven ability to manage programme governance, financials, risks, and dependencies across global, matrixed organisations Excellent stakeholder management skills, with experience engaging senior executives and cross-functional teams Experience working with external delivery partners and managing complex vendor relationships Strong leadership capability, with the ability to guide teams and drive alignment across diverse stakeholders Familiarity with PLM processes, product lifecycle environments, or FMCG/healthcare sectors is highly desirable Relevant qualifications such as PMP, Scrum Master, or equivalent programme management certifications preferred The skills for success Product Development, system development, Project Management, Programme Management, Design Thinking, Process Automisation, IT Service Management, Innovation Processes, Innovation, User Experience Design, Change Analyst, Change Management, Digital Transformation, Value Analysis, Adoption, Technology Adoption Lifecycle, Stakeholder Relationship Management, Vendor Management, Outstanding Communication, stakeholder engagement, Digital Strategy, Product Solution Architecture, Cyber Security Strategy, Cyber Security, Data Privacy, Portfolio Management, Data Governance, Product Compliance, Media Analytics, advertising, Consumer Engagement, Market Value, Market Chain, Data Driven Practices, Advanced Analytics, Data Analytics, Governance. What we offer With inclusion at the heart of everything we do, working alongside our four global Employee Resource Groups, we support our people at every step of their career journey, helping them to succeed in their own individual way. We invest in the wellbeing of our people through parental benefits, an Employee Assistance Program to promote mental health, and life insurance for all employees globally. We have a range of other benefits in line with the local market. Through our global share plans we offer the opportunity to save and share in Reckitt's potential future successes. For eligible roles, we also offer short-term incentives to recognise, appreciate and reward your work for delivering outstanding results. You will be rewarded in line with Reckitt's pay for performance philosophy. Equality We recognise that in real life, great people don't always 'tick all the boxes'. That's why we hire for potential as well as experience. Even if you don't meet every point on the job description, if this role and our company feels like a good fit for you, we still want to hear from you. All qualified applicants will receive consideration for employment without regard to age, disability or medical condition; colour, ethnicity, race, citizenship, and national origin; religion, faith; pregnancy, family status and caring responsibilities; sexual orientation; sex, gender identity, gender expression, and transgender identity; protected veteran status; size or any other basis protected by appropriate law.
Cyber Operations Lead
SYSGROUP PLC Edinburgh, Midlothian
Edinburgh, United Kingdom Posted on 16/07/2026 SysGroup is hiring a Cyber Operations Lead, based in Edinburgh, to head the day to day delivery of our cyber security managed services. This is the senior operational leadership role in the Cyber Security team under our 2026 operating model: you own the SOC service, lead the security engineers and analysts, and act as the escalation point for major security incidents across our client base. This is a leadership and delivery role. You will run the operation, develop the people and own the service - including operational delivery of our Zscaler zero trust estate. Key Responsibilities Leadership Lead, coach and develop the cyber operations engineers and analysts - 1:1s, development plans, hiring and succession. Own capacity, shift and on call planning for a 24/7 security service. Set and track the team's certification and capability plan against the SysGroup role framework. Own operational reporting: client facing security reports, KPIs and continual service improvement. Security operations Own SOC/SIEM service delivery: detection coverage, use case tuning, triage quality and shift handovers. Act as major incident lead for security events: containment, client communication and post incident review. Own the vulnerability management lifecycle across managed clients: scan, triage, remediate, report. Set the standard for EDR and security tooling configuration, health and response playbooks. Own operational delivery of the Zscaler zero trust estate (ZIA/ZPA): onboarding, policy lifecycle, tuning and upgrades. Support Risk & Compliance engagements (ISO 27001, Cyber Essentials Plus) with operational evidence. Embed AI assisted workflows (triage, enrichment, reporting) into the SOC and measure the gains. Experience 5+ years in security operations within an MSP/MSSP or equivalent multi client environment. 3+ years leading engineers or analysts, including performance and development responsibility. Track record running major security incidents end to end, including executive level communication. Operational experience with Zscaler (or equivalent SSE/zero trust platform) is a strong advantage. Certifications Essential (or equivalent experience): Microsoft SC 200, plus an incident response credential such as GIAC GCIH. Desirable: Zscaler professional level certification (ZIA/ZPA), SC 300, AZ 500, ISO 27001 Lead Implementer, CISSP or CISM. Why Join Us? Joining SysGroup means becoming part of a dynamic and innovative team that is dedicated to excellence. We offer a supportive and collaborative work environment, where your ideas and contributions are valued. Here are some of the benefits of working with us: Competitive Compensation We offer a competitive salary package, including performance based incentives, to reward your hard work and achievements. Private Healthcare Life insurance Pension We believe in investing in our employees' professional development. You will have your own individual development learning paths with access to various training material and ongoing career advancement opportunities.
22/07/2026
Full time
Edinburgh, United Kingdom Posted on 16/07/2026 SysGroup is hiring a Cyber Operations Lead, based in Edinburgh, to head the day to day delivery of our cyber security managed services. This is the senior operational leadership role in the Cyber Security team under our 2026 operating model: you own the SOC service, lead the security engineers and analysts, and act as the escalation point for major security incidents across our client base. This is a leadership and delivery role. You will run the operation, develop the people and own the service - including operational delivery of our Zscaler zero trust estate. Key Responsibilities Leadership Lead, coach and develop the cyber operations engineers and analysts - 1:1s, development plans, hiring and succession. Own capacity, shift and on call planning for a 24/7 security service. Set and track the team's certification and capability plan against the SysGroup role framework. Own operational reporting: client facing security reports, KPIs and continual service improvement. Security operations Own SOC/SIEM service delivery: detection coverage, use case tuning, triage quality and shift handovers. Act as major incident lead for security events: containment, client communication and post incident review. Own the vulnerability management lifecycle across managed clients: scan, triage, remediate, report. Set the standard for EDR and security tooling configuration, health and response playbooks. Own operational delivery of the Zscaler zero trust estate (ZIA/ZPA): onboarding, policy lifecycle, tuning and upgrades. Support Risk & Compliance engagements (ISO 27001, Cyber Essentials Plus) with operational evidence. Embed AI assisted workflows (triage, enrichment, reporting) into the SOC and measure the gains. Experience 5+ years in security operations within an MSP/MSSP or equivalent multi client environment. 3+ years leading engineers or analysts, including performance and development responsibility. Track record running major security incidents end to end, including executive level communication. Operational experience with Zscaler (or equivalent SSE/zero trust platform) is a strong advantage. Certifications Essential (or equivalent experience): Microsoft SC 200, plus an incident response credential such as GIAC GCIH. Desirable: Zscaler professional level certification (ZIA/ZPA), SC 300, AZ 500, ISO 27001 Lead Implementer, CISSP or CISM. Why Join Us? Joining SysGroup means becoming part of a dynamic and innovative team that is dedicated to excellence. We offer a supportive and collaborative work environment, where your ideas and contributions are valued. Here are some of the benefits of working with us: Competitive Compensation We offer a competitive salary package, including performance based incentives, to reward your hard work and achievements. Private Healthcare Life insurance Pension We believe in investing in our employees' professional development. You will have your own individual development learning paths with access to various training material and ongoing career advancement opportunities.
Infrastructure & Access Management Architect
Mayer Brown LLP
Overview Mayer Brown is an international law firm positioned to represent the world's major corporations, funds, and financial institutions in their most important and complex transactions and disputes. We are recognized by our clients as strategic partners with deep commercial instincts and a commitment to creatively anticipating their needs and delivering excellence in everything we do. We are a collegial and collaborative firm where highly motivated individuals with an unwavering commitment to excellence receive the opportunity, support, and development they need to grow, thrive, and realise their greatest potential all while supporting the Firm's client service principles of excellence, strategic partnership, commercial instinct, integrated strengths, innovation, and collaboration across our international firm. If you enjoy working with team members whose defining characteristics are exceptional client service, initiative, professionalism, responsiveness, and adaptability, you may be the person we are seeking to join our IT department in our London office as an Architect: Infrastructure & Access Management. Responsibilities Stay current with emerging IAM technologies such as passwordless authentication, decentralized identity frameworks, and adaptive access controls. Collaborate with the Senior Architect Information Security and lead the implementation of identity governance automation, leveraging machine learning for anomaly detection and remediation. Ensure seamless integration of multi-factor authentication (MFA) with biometric and mobile device capabilities to improve both security and user experience. Champion the adoption of identity threat detection and response (ITDR) solutions to proactively identify and mitigate identity-based attacks. Develop and maintain the firm's IAM architecture, including identity lifecycle, access governance, and privileged access controls. Design secure authentication and authorization patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP) and in conjunction with the Platform Engineering team, Conditional Access policies aligned with Microsoft best practices. Embed zero trust and least privilege principles across all privileged roles and enterprise applications. Responsible for global firewall design and architecture. Architect and enhance privileged access management (PAM) capabilities, including approval workflows and continuous monitoring. Collaborate with Security to design Azure Policies and guardrails, supporting audit readiness and remediation (e.g., ISO 27001, ISO 22301). Integrate IAM with HR, IT, and engineering systems to ensure policy-driven access throughout the user lifecycle. Oversee Conditional Access deployment, risk-based authentication, and device/state signals. Guide the operation and hardening of multi-site Active Directory domains/forests and cloud identity components (Entra/Azure AD). Align IAM with Firewall, Micro-Segmentation, NDR, Remote Access, and Certificate Management strategies. Assess IAM-related vulnerabilities and design timely mitigations. Establish and maintain reference architectures, design standards, runbooks, and documentation. Participate in vendor governance, roadmap reviews, and security notifications. Communicate architecture decisions to senior business and IT leaders; foster cross-regional collaboration. Track industry trends and recommend innovations to improve security and reduce complexity. Perform other duties as assigned or required to meet Firm goals and objectives The Firm may modify and amend this job description at any time at its sole discretion. Nothing herein creates a contract of employment. Qualifications Bachelor's degree in Computer Science, Information Technology, or related field; equivalent experience considered. Approx. 7-10 years in IAM/identity engineering/architecture within large or enterprise environments; 3+ years leading complex IAM design initiatives. Prior global/large-scale enterprise experience preferred. Relevant industry certifications such as CISSP Microsoft Certified: Identity and Access Administrator Associate required Azure Cybersecurity Expert preferred Certified Identity and Access Manager (CIAM) are highly desirable Technical Skills: Deep expertise in Microsoft identity and security across SaaS/PaaS, IAM, and Privileged Access domains; advanced Entra ID/Azure AD and on prem AD. Strong command of SSO and authentication protocols: OpenID Connect, SAML, OAuth, Kerberos, LDAP. Hands on RBAC design, entitlement management, and automated provisioning/de provisioning pipelines. Proficiency with PowerShell and RESTful integrations for identity automation and compliance checks. Familiarity with NDR and Micro Segmentation patterns; understanding of network topologies and their interplay with IAM. Experience hardening infrastructure and monitoring for malware/unauthorized access in hybrid environments. Exposure to Azure Policy and landing zone guardrails; Conditional Access at scale. Performance Traits: Excellent written and verbal communication; able to explain complex identity concepts to diverse audiences. Strong customer focus, initiative, and ability to operate under pressure with shifting priorities. Collaborative across business analysts, developers, data teams, and security; resilient, agile mindset; commitment to process improvement and structured operational practices. High discretion in handling sensitive information; willingness to challenge the status quo constructively. Willingness to challenge the status quo. At Mayer Brown, we are committed to creating an inclusive work environment that offers our people the opportunity and support they need to succeed. Our culture promotes mutual respect, acceptance, cooperation and productivity among people from all backgrounds and values different perspectives and ideas. One of our core values at Mayer Brown is to promote inclusion at all levels within the business which is actively supported by our Employee Resource Groups - LGBTQI+, Fusion (Race & Ethnicity), Multi-faith, Women, Enable (Disability), Social Inclusion and Opportunities Network and Work and Me (Family). We are happy to discuss any reasonable adjustments that individuals may require throughout the recruitment process and once they have joined the Firm.
22/07/2026
Full time
Overview Mayer Brown is an international law firm positioned to represent the world's major corporations, funds, and financial institutions in their most important and complex transactions and disputes. We are recognized by our clients as strategic partners with deep commercial instincts and a commitment to creatively anticipating their needs and delivering excellence in everything we do. We are a collegial and collaborative firm where highly motivated individuals with an unwavering commitment to excellence receive the opportunity, support, and development they need to grow, thrive, and realise their greatest potential all while supporting the Firm's client service principles of excellence, strategic partnership, commercial instinct, integrated strengths, innovation, and collaboration across our international firm. If you enjoy working with team members whose defining characteristics are exceptional client service, initiative, professionalism, responsiveness, and adaptability, you may be the person we are seeking to join our IT department in our London office as an Architect: Infrastructure & Access Management. Responsibilities Stay current with emerging IAM technologies such as passwordless authentication, decentralized identity frameworks, and adaptive access controls. Collaborate with the Senior Architect Information Security and lead the implementation of identity governance automation, leveraging machine learning for anomaly detection and remediation. Ensure seamless integration of multi-factor authentication (MFA) with biometric and mobile device capabilities to improve both security and user experience. Champion the adoption of identity threat detection and response (ITDR) solutions to proactively identify and mitigate identity-based attacks. Develop and maintain the firm's IAM architecture, including identity lifecycle, access governance, and privileged access controls. Design secure authentication and authorization patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP) and in conjunction with the Platform Engineering team, Conditional Access policies aligned with Microsoft best practices. Embed zero trust and least privilege principles across all privileged roles and enterprise applications. Responsible for global firewall design and architecture. Architect and enhance privileged access management (PAM) capabilities, including approval workflows and continuous monitoring. Collaborate with Security to design Azure Policies and guardrails, supporting audit readiness and remediation (e.g., ISO 27001, ISO 22301). Integrate IAM with HR, IT, and engineering systems to ensure policy-driven access throughout the user lifecycle. Oversee Conditional Access deployment, risk-based authentication, and device/state signals. Guide the operation and hardening of multi-site Active Directory domains/forests and cloud identity components (Entra/Azure AD). Align IAM with Firewall, Micro-Segmentation, NDR, Remote Access, and Certificate Management strategies. Assess IAM-related vulnerabilities and design timely mitigations. Establish and maintain reference architectures, design standards, runbooks, and documentation. Participate in vendor governance, roadmap reviews, and security notifications. Communicate architecture decisions to senior business and IT leaders; foster cross-regional collaboration. Track industry trends and recommend innovations to improve security and reduce complexity. Perform other duties as assigned or required to meet Firm goals and objectives The Firm may modify and amend this job description at any time at its sole discretion. Nothing herein creates a contract of employment. Qualifications Bachelor's degree in Computer Science, Information Technology, or related field; equivalent experience considered. Approx. 7-10 years in IAM/identity engineering/architecture within large or enterprise environments; 3+ years leading complex IAM design initiatives. Prior global/large-scale enterprise experience preferred. Relevant industry certifications such as CISSP Microsoft Certified: Identity and Access Administrator Associate required Azure Cybersecurity Expert preferred Certified Identity and Access Manager (CIAM) are highly desirable Technical Skills: Deep expertise in Microsoft identity and security across SaaS/PaaS, IAM, and Privileged Access domains; advanced Entra ID/Azure AD and on prem AD. Strong command of SSO and authentication protocols: OpenID Connect, SAML, OAuth, Kerberos, LDAP. Hands on RBAC design, entitlement management, and automated provisioning/de provisioning pipelines. Proficiency with PowerShell and RESTful integrations for identity automation and compliance checks. Familiarity with NDR and Micro Segmentation patterns; understanding of network topologies and their interplay with IAM. Experience hardening infrastructure and monitoring for malware/unauthorized access in hybrid environments. Exposure to Azure Policy and landing zone guardrails; Conditional Access at scale. Performance Traits: Excellent written and verbal communication; able to explain complex identity concepts to diverse audiences. Strong customer focus, initiative, and ability to operate under pressure with shifting priorities. Collaborative across business analysts, developers, data teams, and security; resilient, agile mindset; commitment to process improvement and structured operational practices. High discretion in handling sensitive information; willingness to challenge the status quo constructively. Willingness to challenge the status quo. At Mayer Brown, we are committed to creating an inclusive work environment that offers our people the opportunity and support they need to succeed. Our culture promotes mutual respect, acceptance, cooperation and productivity among people from all backgrounds and values different perspectives and ideas. One of our core values at Mayer Brown is to promote inclusion at all levels within the business which is actively supported by our Employee Resource Groups - LGBTQI+, Fusion (Race & Ethnicity), Multi-faith, Women, Enable (Disability), Social Inclusion and Opportunities Network and Work and Me (Family). We are happy to discuss any reasonable adjustments that individuals may require throughout the recruitment process and once they have joined the Firm.
DWP Digital
Lead Security Data Scientist
DWP Digital
Help protect the data of millions of UK citizens DWP delivers services that millions of people rely on every day. Behind those services sits one of the UK's largest repositories of personal and financial data. We're looking for a Lead Security Data Scientist to lead a specialist team using data science, machine learning, AI and advanced analytics to detect threats, uncover malicious activity and strengthen the security of critical public services. This is an opportunity to lead at the heart of DWP's Cyber Resilience Centre (CRC), helping to protect services that support millions of citizens and form part of the UK's national critical infrastructure. About the team The Security Data Science team sits within DWP's Cyber Resilience Centre, bringing together expertise in data science, analytics, machine learning and automation to tackle some of the department's most complex security challenges. The team develops innovative capabilities that help identify threats, support cyber operations and strengthen the security of DWP's systems, services and data. What you'll be doing As Lead Security Data Scientist, you'll set the direction for Security Data Science across DWP, shaping how data science and AI are used to support the department's cyber security objectives. This is primarily a leadership role. You'll lead a team of talented data scientists and analysts, developing capability, setting clear standards and creating the environment for the team to thrive. Working closely with senior stakeholders across cyber security, digital and policy teams, you'll identify where data science can deliver the greatest impact and ensure the team's work contributes directly to organisational objectives. You'll also remain closely connected to the technical work, providing oversight and guidance across machine learning, AI and analytics initiatives. From early discovery through to deployment and continuous improvement, you'll help ensure solutions are effective, scalable and deliver real value. What we're looking for We're looking for an experienced data science leader who is passionate about developing people, driving innovation and solving complex problems. You have: A strong background in data science, machine learning or security analytics Experience leading, developing and growing high-performing technical teams A track record of delivering AI, machine learning or analytics solutions into production Strong stakeholder management skills and the ability to influence at senior levels Experience translating complex technical concepts into clear business outcomes The ability to shape strategy and drive delivery within a large, complex organisation Knowledge of modern AI approaches, including areas such as Retrieval Augmented Generation (RAG), prompt engineering, observability and evaluation Experience in cyber security, fraud analytics, behavioural analytics or threat detection would be particularly valuable. This role sits at the intersection of data science and cyber security. If your experience doesn't align perfectly with every requirement, we'd still encourage you to apply. Click through now for full details on Civil Service Jobs. Why join DWP? This is a rare opportunity to combine leadership, cyber security and advanced data science at scale. You'll work on services that matter, tackle complex challenges, influence strategic decisions and help shape how one of the UK's largest government departments uses AI and analytics to protect critical services and citizen data. Alongside meaningful work, you'll benefit from a competitive salary, a Civil Service Pension with employer contributions worth 28.97%, flexible hybrid working and ongoing opportunities for professional development. DV clearance is required for this role. Applicants must either hold DV clearance or be willing to undergo the clearance process. JBRP1_UKTJ
22/07/2026
Full time
Help protect the data of millions of UK citizens DWP delivers services that millions of people rely on every day. Behind those services sits one of the UK's largest repositories of personal and financial data. We're looking for a Lead Security Data Scientist to lead a specialist team using data science, machine learning, AI and advanced analytics to detect threats, uncover malicious activity and strengthen the security of critical public services. This is an opportunity to lead at the heart of DWP's Cyber Resilience Centre (CRC), helping to protect services that support millions of citizens and form part of the UK's national critical infrastructure. About the team The Security Data Science team sits within DWP's Cyber Resilience Centre, bringing together expertise in data science, analytics, machine learning and automation to tackle some of the department's most complex security challenges. The team develops innovative capabilities that help identify threats, support cyber operations and strengthen the security of DWP's systems, services and data. What you'll be doing As Lead Security Data Scientist, you'll set the direction for Security Data Science across DWP, shaping how data science and AI are used to support the department's cyber security objectives. This is primarily a leadership role. You'll lead a team of talented data scientists and analysts, developing capability, setting clear standards and creating the environment for the team to thrive. Working closely with senior stakeholders across cyber security, digital and policy teams, you'll identify where data science can deliver the greatest impact and ensure the team's work contributes directly to organisational objectives. You'll also remain closely connected to the technical work, providing oversight and guidance across machine learning, AI and analytics initiatives. From early discovery through to deployment and continuous improvement, you'll help ensure solutions are effective, scalable and deliver real value. What we're looking for We're looking for an experienced data science leader who is passionate about developing people, driving innovation and solving complex problems. You have: A strong background in data science, machine learning or security analytics Experience leading, developing and growing high-performing technical teams A track record of delivering AI, machine learning or analytics solutions into production Strong stakeholder management skills and the ability to influence at senior levels Experience translating complex technical concepts into clear business outcomes The ability to shape strategy and drive delivery within a large, complex organisation Knowledge of modern AI approaches, including areas such as Retrieval Augmented Generation (RAG), prompt engineering, observability and evaluation Experience in cyber security, fraud analytics, behavioural analytics or threat detection would be particularly valuable. This role sits at the intersection of data science and cyber security. If your experience doesn't align perfectly with every requirement, we'd still encourage you to apply. Click through now for full details on Civil Service Jobs. Why join DWP? This is a rare opportunity to combine leadership, cyber security and advanced data science at scale. You'll work on services that matter, tackle complex challenges, influence strategic decisions and help shape how one of the UK's largest government departments uses AI and analytics to protect critical services and citizen data. Alongside meaningful work, you'll benefit from a competitive salary, a Civil Service Pension with employer contributions worth 28.97%, flexible hybrid working and ongoing opportunities for professional development. DV clearance is required for this role. Applicants must either hold DV clearance or be willing to undergo the clearance process. JBRP1_UKTJ
DWP Digital
Lead Security Data Scientist
DWP Digital
Help protect the data of millions of UK citizens DWP delivers services that millions of people rely on every day. Behind those services sits one of the UK's largest repositories of personal and financial data. We're looking for a Lead Security Data Scientist to lead a specialist team using data science, machine learning, AI and advanced analytics to detect threats, uncover malicious activity and strengthen the security of critical public services. This is an opportunity to lead at the heart of DWP's Cyber Resilience Centre (CRC), helping to protect services that support millions of citizens and form part of the UK's national critical infrastructure. About the team The Security Data Science team sits within DWP's Cyber Resilience Centre, bringing together expertise in data science, analytics, machine learning and automation to tackle some of the department's most complex security challenges. The team develops innovative capabilities that help identify threats, support cyber operations and strengthen the security of DWP's systems, services and data. What you'll be doing As Lead Security Data Scientist, you'll set the direction for Security Data Science across DWP, shaping how data science and AI are used to support the department's cyber security objectives. This is primarily a leadership role. You'll lead a team of talented data scientists and analysts, developing capability, setting clear standards and creating the environment for the team to thrive. Working closely with senior stakeholders across cyber security, digital and policy teams, you'll identify where data science can deliver the greatest impact and ensure the team's work contributes directly to organisational objectives. You'll also remain closely connected to the technical work, providing oversight and guidance across machine learning, AI and analytics initiatives. From early discovery through to deployment and continuous improvement, you'll help ensure solutions are effective, scalable and deliver real value. What we're looking for We're looking for an experienced data science leader who is passionate about developing people, driving innovation and solving complex problems. You have: A strong background in data science, machine learning or security analytics Experience leading, developing and growing high-performing technical teams A track record of delivering AI, machine learning or analytics solutions into production Strong stakeholder management skills and the ability to influence at senior levels Experience translating complex technical concepts into clear business outcomes The ability to shape strategy and drive delivery within a large, complex organisation Knowledge of modern AI approaches, including areas such as Retrieval Augmented Generation (RAG), prompt engineering, observability and evaluation Experience in cyber security, fraud analytics, behavioural analytics or threat detection would be particularly valuable. This role sits at the intersection of data science and cyber security. If your experience doesn't align perfectly with every requirement, we'd still encourage you to apply. Click through now for full details on Civil Service Jobs. Why join DWP? This is a rare opportunity to combine leadership, cyber security and advanced data science at scale. You'll work on services that matter, tackle complex challenges, influence strategic decisions and help shape how one of the UK's largest government departments uses AI and analytics to protect critical services and citizen data. Alongside meaningful work, you'll benefit from a competitive salary, a Civil Service Pension with employer contributions worth 28.97%, flexible hybrid working and ongoing opportunities for professional development. DV clearance is required for this role. Applicants must either hold DV clearance or be willing to undergo the clearance process. JBRP1_UKTJ
22/07/2026
Full time
Help protect the data of millions of UK citizens DWP delivers services that millions of people rely on every day. Behind those services sits one of the UK's largest repositories of personal and financial data. We're looking for a Lead Security Data Scientist to lead a specialist team using data science, machine learning, AI and advanced analytics to detect threats, uncover malicious activity and strengthen the security of critical public services. This is an opportunity to lead at the heart of DWP's Cyber Resilience Centre (CRC), helping to protect services that support millions of citizens and form part of the UK's national critical infrastructure. About the team The Security Data Science team sits within DWP's Cyber Resilience Centre, bringing together expertise in data science, analytics, machine learning and automation to tackle some of the department's most complex security challenges. The team develops innovative capabilities that help identify threats, support cyber operations and strengthen the security of DWP's systems, services and data. What you'll be doing As Lead Security Data Scientist, you'll set the direction for Security Data Science across DWP, shaping how data science and AI are used to support the department's cyber security objectives. This is primarily a leadership role. You'll lead a team of talented data scientists and analysts, developing capability, setting clear standards and creating the environment for the team to thrive. Working closely with senior stakeholders across cyber security, digital and policy teams, you'll identify where data science can deliver the greatest impact and ensure the team's work contributes directly to organisational objectives. You'll also remain closely connected to the technical work, providing oversight and guidance across machine learning, AI and analytics initiatives. From early discovery through to deployment and continuous improvement, you'll help ensure solutions are effective, scalable and deliver real value. What we're looking for We're looking for an experienced data science leader who is passionate about developing people, driving innovation and solving complex problems. You have: A strong background in data science, machine learning or security analytics Experience leading, developing and growing high-performing technical teams A track record of delivering AI, machine learning or analytics solutions into production Strong stakeholder management skills and the ability to influence at senior levels Experience translating complex technical concepts into clear business outcomes The ability to shape strategy and drive delivery within a large, complex organisation Knowledge of modern AI approaches, including areas such as Retrieval Augmented Generation (RAG), prompt engineering, observability and evaluation Experience in cyber security, fraud analytics, behavioural analytics or threat detection would be particularly valuable. This role sits at the intersection of data science and cyber security. If your experience doesn't align perfectly with every requirement, we'd still encourage you to apply. Click through now for full details on Civil Service Jobs. Why join DWP? This is a rare opportunity to combine leadership, cyber security and advanced data science at scale. You'll work on services that matter, tackle complex challenges, influence strategic decisions and help shape how one of the UK's largest government departments uses AI and analytics to protect critical services and citizen data. Alongside meaningful work, you'll benefit from a competitive salary, a Civil Service Pension with employer contributions worth 28.97%, flexible hybrid working and ongoing opportunities for professional development. DV clearance is required for this role. Applicants must either hold DV clearance or be willing to undergo the clearance process. JBRP1_UKTJ
SOC Operations Team Lead
Jobtailor
Responsibilities Lead the day-to day operation of the Security Operations Centre, ensuring high quality security monitoring, incident response and threat detection services. Provide technical leadership, mentoring and coaching to SOC Analysts, supporting their development and driving consistent investigation standards. Act as the senior escalation point for complex or high priority security incidents, providing technical oversight and coordinating response activities. Oversee incident investigations using Microsoft Sentinel, Microsoft Defender XDR and Microsoft Entra ID, ensuring incidents are accurately prioritised, investigated and resolved. Drive continuous improvement across SOC processes, detection engineering, automation, playbooks and operational procedures to enhance service quality and efficiency. Monitor SOC performance against KPIs and SLAs, producing operational reporting and identifying opportunities to improve service delivery. Build strong relationships with customers and internal stakeholders, providing technical guidance and contributing to service reviews and operational governance. Support onboarding of new security technologies, telemetry sources and Microsoft security capabilities, ensuring they are effectively integrated into SOC operations. Promote operational excellence by identifying gaps in tooling, processes or detection coverage and implementing practical improvements. Contribute to the ongoing maturity of the SOC, ensuring services remain proactive, resilient and aligned with evolving cyber threats. Requirements Experience leading, mentoring or supervising analysts within a Security Operations Centre. Strong hands on experience with Microsoft Sentinel, Microsoft Defender XDR and Microsoft Entra ID. Proven experience managing complex cyber security incidents through investigation, containment and resolution. Strong understanding of security operations, threat detection, incident response and Microsoft security technologies. Experience improving SOC processes, detection capability, automation and operational maturity. Ability to lead technical discussions and communicate effectively with customers, stakeholders and internal teams. Experience producing operational metrics, reporting and service performance insights. Understanding and operating with ITIL Incident Management processes. Familiarity with SIEM, SOAR, XDR, MITRE ATT&CK and ITIL based service environments. Core Competencies Demonstrates expertise in leading Security Operations Centre activities, focusing on incident response, threat detection, and operational excellence. Proficient in utilizing Microsoft security technologies to enhance service delivery and improve SOC processes.
22/07/2026
Full time
Responsibilities Lead the day-to day operation of the Security Operations Centre, ensuring high quality security monitoring, incident response and threat detection services. Provide technical leadership, mentoring and coaching to SOC Analysts, supporting their development and driving consistent investigation standards. Act as the senior escalation point for complex or high priority security incidents, providing technical oversight and coordinating response activities. Oversee incident investigations using Microsoft Sentinel, Microsoft Defender XDR and Microsoft Entra ID, ensuring incidents are accurately prioritised, investigated and resolved. Drive continuous improvement across SOC processes, detection engineering, automation, playbooks and operational procedures to enhance service quality and efficiency. Monitor SOC performance against KPIs and SLAs, producing operational reporting and identifying opportunities to improve service delivery. Build strong relationships with customers and internal stakeholders, providing technical guidance and contributing to service reviews and operational governance. Support onboarding of new security technologies, telemetry sources and Microsoft security capabilities, ensuring they are effectively integrated into SOC operations. Promote operational excellence by identifying gaps in tooling, processes or detection coverage and implementing practical improvements. Contribute to the ongoing maturity of the SOC, ensuring services remain proactive, resilient and aligned with evolving cyber threats. Requirements Experience leading, mentoring or supervising analysts within a Security Operations Centre. Strong hands on experience with Microsoft Sentinel, Microsoft Defender XDR and Microsoft Entra ID. Proven experience managing complex cyber security incidents through investigation, containment and resolution. Strong understanding of security operations, threat detection, incident response and Microsoft security technologies. Experience improving SOC processes, detection capability, automation and operational maturity. Ability to lead technical discussions and communicate effectively with customers, stakeholders and internal teams. Experience producing operational metrics, reporting and service performance insights. Understanding and operating with ITIL Incident Management processes. Familiarity with SIEM, SOAR, XDR, MITRE ATT&CK and ITIL based service environments. Core Competencies Demonstrates expertise in leading Security Operations Centre activities, focusing on incident response, threat detection, and operational excellence. Proficient in utilizing Microsoft security technologies to enhance service delivery and improve SOC processes.
DWP Digital
Lead Security Data Scientist
DWP Digital Blackpool, Lancashire
Help protect the data of millions of UK citizens DWP delivers services that millions of people rely on every day. Behind those services sits one of the UK's largest repositories of personal and financial data. We're looking for a Lead Security Data Scientist to lead a specialist team using data science, machine learning, AI and advanced analytics to detect threats, uncover malicious activity and strengthen the security of critical public services. This is an opportunity to lead at the heart of DWP's Cyber Resilience Centre (CRC), helping to protect services that support millions of citizens and form part of the UK's national critical infrastructure. About the team The Security Data Science team sits within DWP's Cyber Resilience Centre, bringing together expertise in data science, analytics, machine learning and automation to tackle some of the department's most complex security challenges. The team develops innovative capabilities that help identify threats, support cyber operations and strengthen the security of DWP's systems, services and data. What you'll be doing As Lead Security Data Scientist, you'll set the direction for Security Data Science across DWP, shaping how data science and AI are used to support the department's cyber security objectives. This is primarily a leadership role. You'll lead a team of talented data scientists and analysts, developing capability, setting clear standards and creating the environment for the team to thrive. Working closely with senior stakeholders across cyber security, digital and policy teams, you'll identify where data science can deliver the greatest impact and ensure the team's work contributes directly to organisational objectives. You'll also remain closely connected to the technical work, providing oversight and guidance across machine learning, AI and analytics initiatives. From early discovery through to deployment and continuous improvement, you'll help ensure solutions are effective, scalable and deliver real value. What we're looking for We're looking for an experienced data science leader who is passionate about developing people, driving innovation and solving complex problems. You have: A strong background in data science, machine learning or security analytics Experience leading, developing and growing high-performing technical teams A track record of delivering AI, machine learning or analytics solutions into production Strong stakeholder management skills and the ability to influence at senior levels Experience translating complex technical concepts into clear business outcomes The ability to shape strategy and drive delivery within a large, complex organisation Knowledge of modern AI approaches, including areas such as Retrieval Augmented Generation (RAG), prompt engineering, observability and evaluation Experience in cyber security, fraud analytics, behavioural analytics or threat detection would be particularly valuable. This role sits at the intersection of data science and cyber security. If your experience doesn't align perfectly with every requirement, we'd still encourage you to apply. Click through now for full details on Civil Service Jobs. Why join DWP? This is a rare opportunity to combine leadership, cyber security and advanced data science at scale. You'll work on services that matter, tackle complex challenges, influence strategic decisions and help shape how one of the UK's largest government departments uses AI and analytics to protect critical services and citizen data. Alongside meaningful work, you'll benefit from a competitive salary, a Civil Service Pension with employer contributions worth 28.97%, flexible hybrid working and ongoing opportunities for professional development. DV clearance is required for this role. Applicants must either hold DV clearance or be willing to undergo the clearance process. JBRP1_UKTJ
22/07/2026
Full time
Help protect the data of millions of UK citizens DWP delivers services that millions of people rely on every day. Behind those services sits one of the UK's largest repositories of personal and financial data. We're looking for a Lead Security Data Scientist to lead a specialist team using data science, machine learning, AI and advanced analytics to detect threats, uncover malicious activity and strengthen the security of critical public services. This is an opportunity to lead at the heart of DWP's Cyber Resilience Centre (CRC), helping to protect services that support millions of citizens and form part of the UK's national critical infrastructure. About the team The Security Data Science team sits within DWP's Cyber Resilience Centre, bringing together expertise in data science, analytics, machine learning and automation to tackle some of the department's most complex security challenges. The team develops innovative capabilities that help identify threats, support cyber operations and strengthen the security of DWP's systems, services and data. What you'll be doing As Lead Security Data Scientist, you'll set the direction for Security Data Science across DWP, shaping how data science and AI are used to support the department's cyber security objectives. This is primarily a leadership role. You'll lead a team of talented data scientists and analysts, developing capability, setting clear standards and creating the environment for the team to thrive. Working closely with senior stakeholders across cyber security, digital and policy teams, you'll identify where data science can deliver the greatest impact and ensure the team's work contributes directly to organisational objectives. You'll also remain closely connected to the technical work, providing oversight and guidance across machine learning, AI and analytics initiatives. From early discovery through to deployment and continuous improvement, you'll help ensure solutions are effective, scalable and deliver real value. What we're looking for We're looking for an experienced data science leader who is passionate about developing people, driving innovation and solving complex problems. You have: A strong background in data science, machine learning or security analytics Experience leading, developing and growing high-performing technical teams A track record of delivering AI, machine learning or analytics solutions into production Strong stakeholder management skills and the ability to influence at senior levels Experience translating complex technical concepts into clear business outcomes The ability to shape strategy and drive delivery within a large, complex organisation Knowledge of modern AI approaches, including areas such as Retrieval Augmented Generation (RAG), prompt engineering, observability and evaluation Experience in cyber security, fraud analytics, behavioural analytics or threat detection would be particularly valuable. This role sits at the intersection of data science and cyber security. If your experience doesn't align perfectly with every requirement, we'd still encourage you to apply. Click through now for full details on Civil Service Jobs. Why join DWP? This is a rare opportunity to combine leadership, cyber security and advanced data science at scale. You'll work on services that matter, tackle complex challenges, influence strategic decisions and help shape how one of the UK's largest government departments uses AI and analytics to protect critical services and citizen data. Alongside meaningful work, you'll benefit from a competitive salary, a Civil Service Pension with employer contributions worth 28.97%, flexible hybrid working and ongoing opportunities for professional development. DV clearance is required for this role. Applicants must either hold DV clearance or be willing to undergo the clearance process. JBRP1_UKTJ
Interface Recruitment
IT Systems & Support Engineer
Interface Recruitment Huddersfield, Yorkshire
Huddersfield 30,000 - 35,000 Office Based Permanent Looking for more than just another IT support role? We're recruiting on behalf of a long-established Yorkshire manufacturer looking to strengthen its internal IT team with the appointment of an experienced IT Systems & Support Engineer. This is far more than a traditional support role. The business has a clear long-term succession plan in place and is looking for someone with the ambition and technical capability to develop into a broader IT Operations role over the next two years, working alongside an experienced IT Manager before taking on increasing responsibility. If you're looking for genuine career progression rather than simply moving sideways, this is an excellent opportunity to build your career within a stable, growing manufacturing business. The Role Joining a small, close-knit IT team, you'll provide day-to-day technical support whilst becoming increasingly involved in infrastructure, networking, cyber security and operational IT. Alongside you will be an experienced Business Systems Analyst responsible for ERP, MRP and wider business applications, allowing this role to focus on the operational technology estate. You'll gain exposure to a wide range of technologies and projects whilst working closely with experienced colleagues who are committed to supporting your development. Key Responsibilities Provide 1st and 2nd line support across the business Support Microsoft 365, Entra ID, Intune and Windows environments Assist with Windows Server and Hyper-V administration Support networking, switching and firewall infrastructure Manage user accounts, devices and endpoint technologies Assist with backup, disaster recovery and cyber security Support telephony, CCTV and manufacturing technology Work with third-party suppliers Contribute to infrastructure improvements and IT projects Maintain technical documentation and procedures Technology Environment Microsoft 365 Entra ID (Azure AD) Intune Autopilot Windows Server Hyper-V SonicWall Microsoft Defender Networking & Switching Backup & Disaster Recovery CCTV ERP-integrated manufacturing systems We're Interested In You'll probably already be working as a: IT Systems Engineer IT Support Engineer Senior IT Support Engineer 2nd Line Engineer 3rd Line Engineer Systems Administrator Infrastructure Engineer Technical Support Engineer Manufacturing experience would be advantageous but isn't essential. More important is someone who enjoys learning, takes ownership of problems and wants to continue developing technically whilst progressing into a broader operational role. Why Apply? Genuine progression into an IT Operations position Structured succession planning over the next two years Broad technical exposure across infrastructure and operational technology Small team where your contribution is recognised Stable and successful manufacturing environment Opportunity to influence systems and processes Long-term career development Salary: 30,000 - 35,000 Location: Huddersfield (Office Based) Why this opportunity? Most IT support roles offer incremental progression. This role offers something much rarer. The business is investing in someone now, giving them the time to develop, learn the environment and build the knowledge needed to take on a much broader operational IT position in the future. If you're ambitious, technically curious and looking for your next long-term move, we'd love to hear from you.
22/07/2026
Full time
Huddersfield 30,000 - 35,000 Office Based Permanent Looking for more than just another IT support role? We're recruiting on behalf of a long-established Yorkshire manufacturer looking to strengthen its internal IT team with the appointment of an experienced IT Systems & Support Engineer. This is far more than a traditional support role. The business has a clear long-term succession plan in place and is looking for someone with the ambition and technical capability to develop into a broader IT Operations role over the next two years, working alongside an experienced IT Manager before taking on increasing responsibility. If you're looking for genuine career progression rather than simply moving sideways, this is an excellent opportunity to build your career within a stable, growing manufacturing business. The Role Joining a small, close-knit IT team, you'll provide day-to-day technical support whilst becoming increasingly involved in infrastructure, networking, cyber security and operational IT. Alongside you will be an experienced Business Systems Analyst responsible for ERP, MRP and wider business applications, allowing this role to focus on the operational technology estate. You'll gain exposure to a wide range of technologies and projects whilst working closely with experienced colleagues who are committed to supporting your development. Key Responsibilities Provide 1st and 2nd line support across the business Support Microsoft 365, Entra ID, Intune and Windows environments Assist with Windows Server and Hyper-V administration Support networking, switching and firewall infrastructure Manage user accounts, devices and endpoint technologies Assist with backup, disaster recovery and cyber security Support telephony, CCTV and manufacturing technology Work with third-party suppliers Contribute to infrastructure improvements and IT projects Maintain technical documentation and procedures Technology Environment Microsoft 365 Entra ID (Azure AD) Intune Autopilot Windows Server Hyper-V SonicWall Microsoft Defender Networking & Switching Backup & Disaster Recovery CCTV ERP-integrated manufacturing systems We're Interested In You'll probably already be working as a: IT Systems Engineer IT Support Engineer Senior IT Support Engineer 2nd Line Engineer 3rd Line Engineer Systems Administrator Infrastructure Engineer Technical Support Engineer Manufacturing experience would be advantageous but isn't essential. More important is someone who enjoys learning, takes ownership of problems and wants to continue developing technically whilst progressing into a broader operational role. Why Apply? Genuine progression into an IT Operations position Structured succession planning over the next two years Broad technical exposure across infrastructure and operational technology Small team where your contribution is recognised Stable and successful manufacturing environment Opportunity to influence systems and processes Long-term career development Salary: 30,000 - 35,000 Location: Huddersfield (Office Based) Why this opportunity? Most IT support roles offer incremental progression. This role offers something much rarer. The business is investing in someone now, giving them the time to develop, learn the environment and build the knowledge needed to take on a much broader operational IT position in the future. If you're ambitious, technically curious and looking for your next long-term move, we'd love to hear from you.
Senior Cyber Security Analyst (12 month FTC)
Marshall of Cambridge (Holdings) Limited Cambridge, Cambridgeshire
Competitive salary and remuneration package including, 27 days holiday, pension contributions matched up to 9%Hybrid working opportunityPrivate HealthcareMarshall, an independent, family-owned British company, proudly helping our customers move forwards since 1909We now have an opportunity for a Senior Cyber Security Analyst (12 month contract) within Marshall.The focus of this technical role is on threat prevention, detection and response for Marshall, including the configuration and monitoring of a security information and event management (SIEM) system, operating next generation antivirus, intrusion detection/prevention systems (IDS/IPS), vulnerability management tools and Firewall, DLP, Web and Email Security Gateways.This is a senior role, where the holder will also be expected to evolve and expand the use of current security toolsets, help identify and implement additional tools, services, process changes, policy decisions and close compliance gaps, to enhance the Marshall protection and detection capabilities as risks evolve over time.Responsibilities include:Managing set checklistsProblem management through to handover or resolutionThreat identification and classificationIncident response leadReport writingStakeholder managementContinuous improvementJunior SOC staff mentoringTasks:Helping to maintain and monitor the effectiveness of security measures and controlsConduct and help coordinate, routine security event monitoring and investigations using available toolsUse, configure and develop the use of a security information and event management (SIEM) and EDR toolMonitor and configure network intrusion detection and prevention systemsAnalyse and create reports for security incidents, to determine root cause and lessons learntCreate and rehearse Incident Response plans, support audits and red team engagementsWork closely with other Cyber Security/IT team members and external support groupsRoutinely communicate with individuals both inside and outside the businessResponding to, own and close/escalate service ticketsTake ownership as required, of project activities assigned from internal or external projectsConfiguring, reviewing and reporting relevant risks using vulnerability testing tools/servicesInput into the risk management process and help prioritise key mitigation strategiesConfidently work with outside services in the event of incident response or routine investigations, including Red/Blue Team engagementsAid in the delivery of security awareness training to the businessMentor junior cyber security analyst/sOn occasion, be able to cover Cyber Security Manager operational responsibilitiesPlease apply if you have most of the following:Technical Competencies:Deep hands-on skills with Windows and ideally Linux operating systems, also networking and bespoke device typesVery good awareness of computer networking protocols in relation to cyber securityAdministration, configuration and use of a Security Information and Event Management (SIEM) system, including creating alerts, reports, dashboards, handling IOCs and Threat FeedsAdministration of Firewalls, Web Proxies, Web Application Firewalls, Email Security and Endpoint Detection-Response softwareTechnical understanding of common cyber security threats, faced by individuals or organisations, as well as mapping threats to frameworks such as MITRE ATT&CKExtensive and detailed knowledge of how software/hardware vulnerabilities can be exploitedAbility to prioritise risks in terms of potential likelihood, impact, consequences and mitigationsAny Cyber Security related qualificationsExperience:Experience of working in a Security Operations Centre or similar roleDetailed exposure to Applications, Networks, Servers and/or Endpoint devicesWorking with large amounts of data, for analysis, reporting or general IT servicesDocumenting, developing and expanding on existing operational cyber security processes and playbooksExposure to and experience of recovering from cyber security incidentsExperience working in or for a highly regulated industry, with data classifications and compliance frameworksPractical experience knowledge of vulnerability scanning and pen testing type toolsExperience doing gap analysis, threat modelling and managing/mapping TTPsExperience of collating and presenting information to others inside and outside IT or Security TeamsCompiling risk assessments, technical, security or otherwise, including lessons learntYou must Be available to attend site at short notice should there be a major cyber incident which requires onsite investigation, coordination or responseAre you eligible for a guaranteed interview? If you identify as disabled under the Disability Confident Scheme, a care leaver, have experience in care, or are a member/veteran of the armed forces, you may qualify. If you meet the essential criteria for the role, reach out to .A Resourcing team member will respond to you as soon as possible. Group is an Equal Opportunity EmployerMarshall Group is an Equal Opportunity EmployerMarshall Group is an equal opportunity employer and values a diverse and inclusive workplace. All qualified candidates will receive consideration for employment without regard to age, race, colour, religion, genetic information, sex, sexual orientation, gender identity, national origin, disability status, or any other characteristic protected by law. For more information about Equal Opportunity in the Workplaceeveryone feels valued, respected, and able to thrive, free from bullying, harassment, and discrimination. Fostering a positive culture is key to our individual and shared success.
21/07/2026
Full time
Competitive salary and remuneration package including, 27 days holiday, pension contributions matched up to 9%Hybrid working opportunityPrivate HealthcareMarshall, an independent, family-owned British company, proudly helping our customers move forwards since 1909We now have an opportunity for a Senior Cyber Security Analyst (12 month contract) within Marshall.The focus of this technical role is on threat prevention, detection and response for Marshall, including the configuration and monitoring of a security information and event management (SIEM) system, operating next generation antivirus, intrusion detection/prevention systems (IDS/IPS), vulnerability management tools and Firewall, DLP, Web and Email Security Gateways.This is a senior role, where the holder will also be expected to evolve and expand the use of current security toolsets, help identify and implement additional tools, services, process changes, policy decisions and close compliance gaps, to enhance the Marshall protection and detection capabilities as risks evolve over time.Responsibilities include:Managing set checklistsProblem management through to handover or resolutionThreat identification and classificationIncident response leadReport writingStakeholder managementContinuous improvementJunior SOC staff mentoringTasks:Helping to maintain and monitor the effectiveness of security measures and controlsConduct and help coordinate, routine security event monitoring and investigations using available toolsUse, configure and develop the use of a security information and event management (SIEM) and EDR toolMonitor and configure network intrusion detection and prevention systemsAnalyse and create reports for security incidents, to determine root cause and lessons learntCreate and rehearse Incident Response plans, support audits and red team engagementsWork closely with other Cyber Security/IT team members and external support groupsRoutinely communicate with individuals both inside and outside the businessResponding to, own and close/escalate service ticketsTake ownership as required, of project activities assigned from internal or external projectsConfiguring, reviewing and reporting relevant risks using vulnerability testing tools/servicesInput into the risk management process and help prioritise key mitigation strategiesConfidently work with outside services in the event of incident response or routine investigations, including Red/Blue Team engagementsAid in the delivery of security awareness training to the businessMentor junior cyber security analyst/sOn occasion, be able to cover Cyber Security Manager operational responsibilitiesPlease apply if you have most of the following:Technical Competencies:Deep hands-on skills with Windows and ideally Linux operating systems, also networking and bespoke device typesVery good awareness of computer networking protocols in relation to cyber securityAdministration, configuration and use of a Security Information and Event Management (SIEM) system, including creating alerts, reports, dashboards, handling IOCs and Threat FeedsAdministration of Firewalls, Web Proxies, Web Application Firewalls, Email Security and Endpoint Detection-Response softwareTechnical understanding of common cyber security threats, faced by individuals or organisations, as well as mapping threats to frameworks such as MITRE ATT&CKExtensive and detailed knowledge of how software/hardware vulnerabilities can be exploitedAbility to prioritise risks in terms of potential likelihood, impact, consequences and mitigationsAny Cyber Security related qualificationsExperience:Experience of working in a Security Operations Centre or similar roleDetailed exposure to Applications, Networks, Servers and/or Endpoint devicesWorking with large amounts of data, for analysis, reporting or general IT servicesDocumenting, developing and expanding on existing operational cyber security processes and playbooksExposure to and experience of recovering from cyber security incidentsExperience working in or for a highly regulated industry, with data classifications and compliance frameworksPractical experience knowledge of vulnerability scanning and pen testing type toolsExperience doing gap analysis, threat modelling and managing/mapping TTPsExperience of collating and presenting information to others inside and outside IT or Security TeamsCompiling risk assessments, technical, security or otherwise, including lessons learntYou must Be available to attend site at short notice should there be a major cyber incident which requires onsite investigation, coordination or responseAre you eligible for a guaranteed interview? If you identify as disabled under the Disability Confident Scheme, a care leaver, have experience in care, or are a member/veteran of the armed forces, you may qualify. If you meet the essential criteria for the role, reach out to .A Resourcing team member will respond to you as soon as possible. Group is an Equal Opportunity EmployerMarshall Group is an Equal Opportunity EmployerMarshall Group is an equal opportunity employer and values a diverse and inclusive workplace. All qualified candidates will receive consideration for employment without regard to age, race, colour, religion, genetic information, sex, sexual orientation, gender identity, national origin, disability status, or any other characteristic protected by law. For more information about Equal Opportunity in the Workplaceeveryone feels valued, respected, and able to thrive, free from bullying, harassment, and discrimination. Fostering a positive culture is key to our individual and shared success.
emagine
PAM Business Analyst (h/f)
emagine
Cyber Business Analyst (PAM) Rate: £500-525 p/d Inside IR35 Location: London (4 days) emagine is a high-end professional services consultancy and solutions firm specialising in delivering business and technology services to the financial services sector. We power progress, solve complex challenges, and deliver tangible results through tailored consulting and delivery excellence. Our culture is built on openness, integrity, and strong partnerships, underpinned by our core values: Confident, Dedicated, Responsible, Genuine. The Cyber - PAM role primarily focuses on managing access and identity life cycle processes within the organization, ensuring compliance with regulatory frameworks and effectively supporting business operations through robust analysis and communication. Responsibilities: Performing requirements gathering and compiling formal Business Requirements and Functional Specification documents. Engaging in all aspects of Business Analyst interaction throughout the Project Development life cycle, including the formulation of proposed solutions and testing approaches. Conducting system/integration testing and supporting business user acceptance testing while compiling and presenting test results. Creating project/work-stream status reports and escalating issues/risks to management. Demonstrating strong analytical skills to resolve issues with evidence-based findings. Executing SQL queries and performing systems analysis independently, with advanced Excel capabilities. Establishing proactive communications with senior technology management and maintaining trust-based relationships with stakeholders. Owning risks, issues, and dependencies across project work and ensuring proactive actions to prevent escalations. Upholding company values by building relationships across the bank and leading by example in policy adherence. Improving processes through a continuous improvement mindset and effective stakeholder relationships globally. Managing compliance-related PAM/Identity and Access Management (IAM) frameworks and ensuring governance of processes, procedures, and controls. Must Haves: Experience in Identity & Access Management (IAM) within a financial services context. Strong analytical and problem-solving skills, particularly related to business analysis and requirements gathering. Proven experience with regulatory guidelines (EBA-ICT, FFIEC, NIST, COBIT, FCA) related to access management. Capability to conduct SQL queries and advanced Excel skills. Excellent communication skills, both written and verbal, with the ability to build collaborative relationships. Degree in a relevant field or equivalent experience. Experience in framework development and deployment. Background in cybersecurity domains outside of IAM. A proactive approach to continuous improvement initiatives. The ideal consultants will share our values and be aligned with our ways of working and as your career progresses, you can expect to work across all areas of the project life cycle. We pride ourselves on; Providing our people with a supportive culture, rooted in our values and driven by our purpose. Promoting a culture of inclusion, collaboration, well-being, and learning and development. Providing increased agility and flexibility within our hybrid working model Investing in employees' growth through ongoing training and development Autonomy to take ownership of projects, making decisions and demonstrating individual expertise Providing an transparent performance and career management experience. Our consultants are integral to delivering successful consulting engagements, addressing our clients' most pressing business challenges, and build lasting value in disciplines such as: Solve sophisticated, ambiguous business, change and technology problems, bringing structure and meticulous analysis and planning, acting, and taking decisions with little strategic direction Build, develop and sustain trusted senior client relationships in the C-suite by remaining highly attuned to client needs Drive, enable and support the business, partnering with our leaders, clients, and consultants across our practices to take the best of emagine to our clients through opportunity identification/qualification.
21/07/2026
Contractor
Cyber Business Analyst (PAM) Rate: £500-525 p/d Inside IR35 Location: London (4 days) emagine is a high-end professional services consultancy and solutions firm specialising in delivering business and technology services to the financial services sector. We power progress, solve complex challenges, and deliver tangible results through tailored consulting and delivery excellence. Our culture is built on openness, integrity, and strong partnerships, underpinned by our core values: Confident, Dedicated, Responsible, Genuine. The Cyber - PAM role primarily focuses on managing access and identity life cycle processes within the organization, ensuring compliance with regulatory frameworks and effectively supporting business operations through robust analysis and communication. Responsibilities: Performing requirements gathering and compiling formal Business Requirements and Functional Specification documents. Engaging in all aspects of Business Analyst interaction throughout the Project Development life cycle, including the formulation of proposed solutions and testing approaches. Conducting system/integration testing and supporting business user acceptance testing while compiling and presenting test results. Creating project/work-stream status reports and escalating issues/risks to management. Demonstrating strong analytical skills to resolve issues with evidence-based findings. Executing SQL queries and performing systems analysis independently, with advanced Excel capabilities. Establishing proactive communications with senior technology management and maintaining trust-based relationships with stakeholders. Owning risks, issues, and dependencies across project work and ensuring proactive actions to prevent escalations. Upholding company values by building relationships across the bank and leading by example in policy adherence. Improving processes through a continuous improvement mindset and effective stakeholder relationships globally. Managing compliance-related PAM/Identity and Access Management (IAM) frameworks and ensuring governance of processes, procedures, and controls. Must Haves: Experience in Identity & Access Management (IAM) within a financial services context. Strong analytical and problem-solving skills, particularly related to business analysis and requirements gathering. Proven experience with regulatory guidelines (EBA-ICT, FFIEC, NIST, COBIT, FCA) related to access management. Capability to conduct SQL queries and advanced Excel skills. Excellent communication skills, both written and verbal, with the ability to build collaborative relationships. Degree in a relevant field or equivalent experience. Experience in framework development and deployment. Background in cybersecurity domains outside of IAM. A proactive approach to continuous improvement initiatives. The ideal consultants will share our values and be aligned with our ways of working and as your career progresses, you can expect to work across all areas of the project life cycle. We pride ourselves on; Providing our people with a supportive culture, rooted in our values and driven by our purpose. Promoting a culture of inclusion, collaboration, well-being, and learning and development. Providing increased agility and flexibility within our hybrid working model Investing in employees' growth through ongoing training and development Autonomy to take ownership of projects, making decisions and demonstrating individual expertise Providing an transparent performance and career management experience. Our consultants are integral to delivering successful consulting engagements, addressing our clients' most pressing business challenges, and build lasting value in disciplines such as: Solve sophisticated, ambiguous business, change and technology problems, bringing structure and meticulous analysis and planning, acting, and taking decisions with little strategic direction Build, develop and sustain trusted senior client relationships in the C-suite by remaining highly attuned to client needs Drive, enable and support the business, partnering with our leaders, clients, and consultants across our practices to take the best of emagine to our clients through opportunity identification/qualification.
WTW
Principal Microsoft Defender XDR, IRM & Deception Engineer
WTW
The Principal Microsoft Defender XDR, IRM & Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception programme - including honeypots, honeytokens, decoy users, decoy devices, deceptive credentials, and breadcrumbs - fully integrated with Microsoft Defender XDR (Defender for Endpoint, Defender for Identity, Defender for Office 365, and Defender for Cloud Apps), Microsoft Sentinel, and Microsoft Security Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery and the use of Agentic AI to drive proactive, intelligence-led, and largely autonomous security operations. The Role: Deception Engineering Leadership Own and lead the enterprise cyber deception programme end-to-end, including strategy, architecture, deployment, operations, and continuous improvement. Design, deploy, and operate a layered deception fabric across on-premises, hybrid, and multi-cloud environments using honeypots, honeytokens, decoy accounts, decoy devices, deceptive files / shares, and breadcrumbs. Act as the technical authority for deception engineering and Microsoft Defender XDR across the enterprise. Microsoft Defender XDR Leadership Lead the design, implementation, and optimisation of Microsoft Defender XDR across endpoint, identity, email, and cloud-app workloads. Integrate all deception signals (honeypot, honeytoken, decoy, breadcrumb) into Defender XDR and Microsoft Sentinel as first-class, high-fidelity detections. Define and enforce a unified detection and response strategy across the Microsoft security stack. Data Protection, DLP & Insider Risk Management Lead the design and implementation of Microsoft Purview Data Loss Prevention (DLP) policies across endpoints, cloud apps, and collaboration platforms Define and enforce data protection controls to prevent unauthorised data exfiltration and misuse Leverage Microsoft Insider Risk Management (IRM) to detect risky user behaviour, including data leaks, policy violations, and insider threats Correlate DLP, IRM, and identity signals with Microsoft Defender XDR to provide unified incident context Collaborate with Risk, Compliance, and Legal teams to align DLP and insider risk controls with regulatory and business requirements Continuously optimise detection use cases combining identity, data, and behavioural analytics Multi-Cloud Deception & Detection (AWS, GCP, OCI) Extend the deception programme and Defender-style detection capabilities consistently across AWS, GCP, and OCI, including: Cloud honeypots, decoy IAM roles, and honeytoken cloud credentials / API keys Control-plane, workload, container, and Kubernetes threat detection Cross-cloud identity and access misuse detection Ensure consistent detection, deception, and response coverage across hybrid and multi-cloud environments. Automation, Agentic AI & Continuous Improvement Contribute towards automation of deception deployment, detection, investigation, and response workflows using Microsoft Sentinel SOAR, Logic Apps, and Microsoft Security Copilot. Define KPIs and metrics covering deception engagement, detection coverage, and response maturity. Continuously improve detection, hunting, and deception capabilities to align with emerging threats and adversary tradecraft. Stakeholder Engagement & Technical Leadership Lead and grow a team of Defender XDR and Deception Engineers, setting technical direction, standards, and delivery priorities. Partner with SOC, CTI, Identity, Cloud, and Engineering teams to embed deception and Defender XDR detection into all enterprise platforms. Provide mentorship and leadership to deception engineers, detection engineers, threat hunters, and SOC analysts. Communicate deception strategy, detection coverage, residual risk, and security improvements to senior stakeholders. What we offer: Enjoy a benefits package designed to help you thrive, both professionally and personally. You'll receive 25 days of annual leave plus an extra WTW day to relax and recharge. Our comprehensive health and wellbeing offering includes private healthcare, life insurance, group income protection, and regular health assessments, all giving you peace of mind. Secure your future with our defined contribution pension scheme, featuring matched contributions up to 10% from the company. We support your growth and balance with hybrid working options, access to an employee assistance programme, and a fully paid volunteer day to make a difference in your community. On top of these, you can opt into a variety of additional perks including an electric vehicle car scheme, share scheme, cycle-to-work programme, dental and optical cover, critical illness protection, and much more. Start making the most of your career and wellbeing with a range of benefits tailored for you. Equal Opportunity Employer We're committed to equal employment opportunity and provide application, interview and workplace adjustments and accommodations to all applicants.
21/07/2026
Full time
The Principal Microsoft Defender XDR, IRM & Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception programme - including honeypots, honeytokens, decoy users, decoy devices, deceptive credentials, and breadcrumbs - fully integrated with Microsoft Defender XDR (Defender for Endpoint, Defender for Identity, Defender for Office 365, and Defender for Cloud Apps), Microsoft Sentinel, and Microsoft Security Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery and the use of Agentic AI to drive proactive, intelligence-led, and largely autonomous security operations. The Role: Deception Engineering Leadership Own and lead the enterprise cyber deception programme end-to-end, including strategy, architecture, deployment, operations, and continuous improvement. Design, deploy, and operate a layered deception fabric across on-premises, hybrid, and multi-cloud environments using honeypots, honeytokens, decoy accounts, decoy devices, deceptive files / shares, and breadcrumbs. Act as the technical authority for deception engineering and Microsoft Defender XDR across the enterprise. Microsoft Defender XDR Leadership Lead the design, implementation, and optimisation of Microsoft Defender XDR across endpoint, identity, email, and cloud-app workloads. Integrate all deception signals (honeypot, honeytoken, decoy, breadcrumb) into Defender XDR and Microsoft Sentinel as first-class, high-fidelity detections. Define and enforce a unified detection and response strategy across the Microsoft security stack. Data Protection, DLP & Insider Risk Management Lead the design and implementation of Microsoft Purview Data Loss Prevention (DLP) policies across endpoints, cloud apps, and collaboration platforms Define and enforce data protection controls to prevent unauthorised data exfiltration and misuse Leverage Microsoft Insider Risk Management (IRM) to detect risky user behaviour, including data leaks, policy violations, and insider threats Correlate DLP, IRM, and identity signals with Microsoft Defender XDR to provide unified incident context Collaborate with Risk, Compliance, and Legal teams to align DLP and insider risk controls with regulatory and business requirements Continuously optimise detection use cases combining identity, data, and behavioural analytics Multi-Cloud Deception & Detection (AWS, GCP, OCI) Extend the deception programme and Defender-style detection capabilities consistently across AWS, GCP, and OCI, including: Cloud honeypots, decoy IAM roles, and honeytoken cloud credentials / API keys Control-plane, workload, container, and Kubernetes threat detection Cross-cloud identity and access misuse detection Ensure consistent detection, deception, and response coverage across hybrid and multi-cloud environments. Automation, Agentic AI & Continuous Improvement Contribute towards automation of deception deployment, detection, investigation, and response workflows using Microsoft Sentinel SOAR, Logic Apps, and Microsoft Security Copilot. Define KPIs and metrics covering deception engagement, detection coverage, and response maturity. Continuously improve detection, hunting, and deception capabilities to align with emerging threats and adversary tradecraft. Stakeholder Engagement & Technical Leadership Lead and grow a team of Defender XDR and Deception Engineers, setting technical direction, standards, and delivery priorities. Partner with SOC, CTI, Identity, Cloud, and Engineering teams to embed deception and Defender XDR detection into all enterprise platforms. Provide mentorship and leadership to deception engineers, detection engineers, threat hunters, and SOC analysts. Communicate deception strategy, detection coverage, residual risk, and security improvements to senior stakeholders. What we offer: Enjoy a benefits package designed to help you thrive, both professionally and personally. You'll receive 25 days of annual leave plus an extra WTW day to relax and recharge. Our comprehensive health and wellbeing offering includes private healthcare, life insurance, group income protection, and regular health assessments, all giving you peace of mind. Secure your future with our defined contribution pension scheme, featuring matched contributions up to 10% from the company. We support your growth and balance with hybrid working options, access to an employee assistance programme, and a fully paid volunteer day to make a difference in your community. On top of these, you can opt into a variety of additional perks including an electric vehicle car scheme, share scheme, cycle-to-work programme, dental and optical cover, critical illness protection, and much more. Start making the most of your career and wellbeing with a range of benefits tailored for you. Equal Opportunity Employer We're committed to equal employment opportunity and provide application, interview and workplace adjustments and accommodations to all applicants.
Sopra Steria
Senior SOC Analyst
Sopra Steria Farnborough, Hampshire
Defend Critical Infrastructure. Hunt Threats. Make a Real Impact. Cyber threats never stand still-and neither do we. We're looking for a Senior Security Operations Centre (SOC) Analyst to join our growing Cyber Security team and play a key role in protecting some of the UK's most critical organisations. This is your opportunity to work at the frontline of cyber defence, investigating real-world threats, shaping detection capabilities, and helping drive the evolution of a mature and high-performing SOC. You'll be joining a collaborative team of cyber specialists who are passionate about defending organisations from evolving threats. You'll have the opportunity to influence SOC strategy, enhance detection capabilities, develop your expertise, and work with cutting-edge security technologies in a fast-paced operational environment. Ready to make an impact? Join us and help protect systems that matter. Apply today and take your cyber security career to the next level. If you're passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you. Office based: Farnborough. Clearance: You do need to be eligible for SC and DV Clearance. Shift based: 2 x 6am to 6pm; 2 x 6pm to 61m. 4 days off. What You'll Be Doing: Monitor, triage and investigate security incidents across critical client environments. Analyse network traffic, logs and security events to identify threats and vulnerabilities. Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What You'll Bring: ? Proven experience working within a Security Operations Centre. Hands-on experience with Microsoft Sentinel and Splunk. Strong understanding of MITRE ATT&CK. It would be great if you had: Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP). Firewalls, VPNs, enterprise antivirus and security technologies. Security incident investigation and response. Excellent analytical, communication and stakeholder management skills. Cyber security qualifications such as Security+, BTL1 or equivalent. Malware analysis or reverse engineering experience. Python, PowerShell, Bash, Perl or C++ scripting skills. CySA+, Blue Team Level 2 or other SOC-focused certifications. Experience with QRadar alongside Sentinel and Splunk. If you are interested in this role but not sure if your skills and experience are exactly what we're looking for, please do apply, we'd love to hear from you! Employment Type: Permanent Location: Farnborough on site. Shift based. Security Clearance Level: Eligible for SC and DV Clearance. Internal Recruiter: Jane Salary: To£58K Benefits: 25 days annual leave with the choice to buy additional days, health cash plan, life assurance, pension. Shift allowance. Loved reading about this job and want to know more about us? Sopra Steria's Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client's goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK's most complex safety- and security-critical markets.
21/07/2026
Full time
Defend Critical Infrastructure. Hunt Threats. Make a Real Impact. Cyber threats never stand still-and neither do we. We're looking for a Senior Security Operations Centre (SOC) Analyst to join our growing Cyber Security team and play a key role in protecting some of the UK's most critical organisations. This is your opportunity to work at the frontline of cyber defence, investigating real-world threats, shaping detection capabilities, and helping drive the evolution of a mature and high-performing SOC. You'll be joining a collaborative team of cyber specialists who are passionate about defending organisations from evolving threats. You'll have the opportunity to influence SOC strategy, enhance detection capabilities, develop your expertise, and work with cutting-edge security technologies in a fast-paced operational environment. Ready to make an impact? Join us and help protect systems that matter. Apply today and take your cyber security career to the next level. If you're passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you. Office based: Farnborough. Clearance: You do need to be eligible for SC and DV Clearance. Shift based: 2 x 6am to 6pm; 2 x 6pm to 61m. 4 days off. What You'll Be Doing: Monitor, triage and investigate security incidents across critical client environments. Analyse network traffic, logs and security events to identify threats and vulnerabilities. Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What You'll Bring: ? Proven experience working within a Security Operations Centre. Hands-on experience with Microsoft Sentinel and Splunk. Strong understanding of MITRE ATT&CK. It would be great if you had: Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP). Firewalls, VPNs, enterprise antivirus and security technologies. Security incident investigation and response. Excellent analytical, communication and stakeholder management skills. Cyber security qualifications such as Security+, BTL1 or equivalent. Malware analysis or reverse engineering experience. Python, PowerShell, Bash, Perl or C++ scripting skills. CySA+, Blue Team Level 2 or other SOC-focused certifications. Experience with QRadar alongside Sentinel and Splunk. If you are interested in this role but not sure if your skills and experience are exactly what we're looking for, please do apply, we'd love to hear from you! Employment Type: Permanent Location: Farnborough on site. Shift based. Security Clearance Level: Eligible for SC and DV Clearance. Internal Recruiter: Jane Salary: To£58K Benefits: 25 days annual leave with the choice to buy additional days, health cash plan, life assurance, pension. Shift allowance. Loved reading about this job and want to know more about us? Sopra Steria's Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client's goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK's most complex safety- and security-critical markets.
IAM Senior Business Analyst - Banking - London
Salt Digital Recruitment
Overview Senior IAM Business Analyst Privileged Access Management (PAM) Financial Services - Contract Belgium / France / UK Hybrid (8 Days Onsite Per Month) Long-Term Contract Inside IR35 (UK Contractors via Umbrella) We are partnering with a leading international financial services organisation embarking on a major transformation of its Identity & Access Management (IAM) capabilities. This is an opportunity to join a high-profile programme responsible for strengthening Privileged Access Management (PAM) governance, improving access controls and delivering sustainable identity processes across a complex, highly regulated enterprise. This isn't a traditional Business Analyst role; we are seeking someone who genuinely understands IAM and can bridge business stakeholders, security teams and technical delivery teams to design practical, compliant and scalable IAM solutions. What You 27ll Be Doing Lead business analysis activities across Privileged Access Management initiatives Drive PAM governance, remediation and access control improvements Capture and document business and functional requirements Design As-Is and To-Be business processes using BPMN Produce high-quality functional specifications for technical delivery teams Work closely with Security, IAM, Infrastructure and Business stakeholders Support role modelling, RBAC, access reviews and recertification activities Develop user guides, quick reference materials and training documentation Support testing, implementation and successful business adoption Perform impact assessments and identify business risks Help define pragmatic solutions that balance governance, security and operational efficiency What We're Looking For 5+ years' experience as an IAM Business Analyst or PAM Business Analyst Strong knowledge of Identity & Access Management principles Hands-on experience with Privileged Access Management governance Experience with CyberArk, SailPoint, Delinea, BeyondTrust or similar IAM/PAM technologies Strong understanding of RBAC, access certification, privileged account governance and least-privilege principles Excellent BPMN process mapping and business process documentation skills Experience writing BRDs, user stories, functional specifications and process documentation Strong stakeholder management and workshop facilitation experience Experience delivering within highly regulated environments such as Financial Services You 27ll Stand Out If You Have Experience with CyberArk SailPoint Delinea BeyondTrust Active Directory Identity Governance & Administration (IGA) Privileged Access Management (PAM) Access Reviews & Recertification Role-Based Access Control (RBAC) Zero Standing Privilege (ZSP) Joiner, Mover & Leaver (JML) processes ServiceNow Agile delivery methodologies Why Apply? This is a fantastic opportunity to join a strategic cyber security programme where Identity & Access Management sits at the heart of the organisation's technology and regulatory agenda. You 27ll work alongside senior security leaders, architects and engineering teams on enterprise-scale initiatives that directly influence how privileged access is governed across a global organisation. Additional Information Location: Hybrid working with 8 days onsite per month (Belgium, France or UK office) Contract: Long-term opportunity. IR35: This role is Inside IR35 for UK-based contractors. Contractors engaged in the UK must operate through an approved Umbrella Company. Please note: Due to the onsite requirement, applicants must be based in a country where the client has an office (Belgium, France or the UK). Rates depend on experience and client requirements
21/07/2026
Full time
Overview Senior IAM Business Analyst Privileged Access Management (PAM) Financial Services - Contract Belgium / France / UK Hybrid (8 Days Onsite Per Month) Long-Term Contract Inside IR35 (UK Contractors via Umbrella) We are partnering with a leading international financial services organisation embarking on a major transformation of its Identity & Access Management (IAM) capabilities. This is an opportunity to join a high-profile programme responsible for strengthening Privileged Access Management (PAM) governance, improving access controls and delivering sustainable identity processes across a complex, highly regulated enterprise. This isn't a traditional Business Analyst role; we are seeking someone who genuinely understands IAM and can bridge business stakeholders, security teams and technical delivery teams to design practical, compliant and scalable IAM solutions. What You 27ll Be Doing Lead business analysis activities across Privileged Access Management initiatives Drive PAM governance, remediation and access control improvements Capture and document business and functional requirements Design As-Is and To-Be business processes using BPMN Produce high-quality functional specifications for technical delivery teams Work closely with Security, IAM, Infrastructure and Business stakeholders Support role modelling, RBAC, access reviews and recertification activities Develop user guides, quick reference materials and training documentation Support testing, implementation and successful business adoption Perform impact assessments and identify business risks Help define pragmatic solutions that balance governance, security and operational efficiency What We're Looking For 5+ years' experience as an IAM Business Analyst or PAM Business Analyst Strong knowledge of Identity & Access Management principles Hands-on experience with Privileged Access Management governance Experience with CyberArk, SailPoint, Delinea, BeyondTrust or similar IAM/PAM technologies Strong understanding of RBAC, access certification, privileged account governance and least-privilege principles Excellent BPMN process mapping and business process documentation skills Experience writing BRDs, user stories, functional specifications and process documentation Strong stakeholder management and workshop facilitation experience Experience delivering within highly regulated environments such as Financial Services You 27ll Stand Out If You Have Experience with CyberArk SailPoint Delinea BeyondTrust Active Directory Identity Governance & Administration (IGA) Privileged Access Management (PAM) Access Reviews & Recertification Role-Based Access Control (RBAC) Zero Standing Privilege (ZSP) Joiner, Mover & Leaver (JML) processes ServiceNow Agile delivery methodologies Why Apply? This is a fantastic opportunity to join a strategic cyber security programme where Identity & Access Management sits at the heart of the organisation's technology and regulatory agenda. You 27ll work alongside senior security leaders, architects and engineering teams on enterprise-scale initiatives that directly influence how privileged access is governed across a global organisation. Additional Information Location: Hybrid working with 8 days onsite per month (Belgium, France or UK office) Contract: Long-term opportunity. IR35: This role is Inside IR35 for UK-based contractors. Contractors engaged in the UK must operate through an approved Umbrella Company. Please note: Due to the onsite requirement, applicants must be based in a country where the client has an office (Belgium, France or the UK). Rates depend on experience and client requirements

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board